CVE-2024-34463
MEDIUMBPL Personal Weighing Scale PWS-01BT - Info Disclosure
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-34463. PoCs published by yash-chandna.
AI-analyzed exploit summary The repository contains a Bluetooth Low Energy (BLE) scanner for detecting BPL Smart Weighing Scale PWS-01-BT devices. It does not exploit the vulnerability but scans for vulnerable devices by monitoring BLE advertisements.
Description
BPL Personal Weighing Scale PWS-01BT IND/09/18/599 devices send sensitive information in unencrypted BLE packets. (The packet data also lacks authentication and integrity protection.)
Exploits (1)
The repository contains a Bluetooth Low Energy (BLE) scanner for detecting BPL Smart Weighing Scale PWS-01-BT devices. It does not exploit the vulnerability but scans for vulnerable devices by monitoring BLE advertisements.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N