VDB

GCVE-110-CERTCC-2020-534195

GCVE-110-CERTCC-2020-534195
Advisory PublishedCVSS 0.0/10
Vulnetix · Advisory published May 18, 2020
Bluetooth Low Energy (BLE) and Basic Rate / Enhanced Data Rate (BR/EDR) Core Configurations are used for low-power short-range communications. To establish an encrypted connection, two Bluetooth devices must pair with each other using an agreed upon Association Model. It is possible for an unauthenticated, adjacent attacker to man-in-the-middle (MITM) attack the pairing process and force each victim device into a different Association Model, possibly granting the attacker the ability to initiate any Bluetooth operation on either attacked device.

Risk Scores

CVSS 2.0
0.0/10
None · AV:--/AC:--/Au:--/C:--/I:--/A:--
certcc-cam
certcc-cam
impact0population0exploitation0widely_known0score_current0ease_of_exploitation0
certcc-vrda
certcc-vrda
d1_direct_report1
certcc-cvss-temporal-env
certcc-cvss-temporal-env
temporal_score0remediation_levelNDreport_confidenceNDenvironmental_score0target_distributionNDenvironmental_vectorCDP:ND/TD:ND/CR:ND/IR:ND/AR:ND

Browse GCVE Records

75,248 records in the GCVE database · Updated July 30, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›