VendorsOwl Labsmeeting_owl_proall versions
Vulnerabilities

Owl Labs Meeting Owl Pro

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2022-31462
Owl Labs Meeting Owl 5.2.0.15 allows attackers to control the device via a backdoor password (derived from the serial number) that can be found in Bluetooth broadcast data.
Published 2022-06-02 · Modified
9.3EPSS 0.009
CVE-2022-31463
Owl Labs Meeting Owl 5.2.0.15 does not require a password for Bluetooth commands, because only client-side authentication is used.
Published 2022-06-02 · Modified
8.2EPSS 0.010
CVE-2022-31460
Owl Labs Meeting Owl 5.2.0.15 allows attackers to activate Tethering Mode with hard-coded hoothoot credentials via a certain c 150 value.
Published 2022-06-02 · Modified
7.4EPSS 0.034
CVE-2022-31461
Owl Labs Meeting Owl 5.2.0.15 allows attackers to deactivate the passcode protection mechanism via a certain c 11 message.
Published 2022-06-02 · Modified
7.4EPSS 0.009
CVE-2022-31459
Owl Labs Meeting Owl 5.2.0.15 allows attackers to retrieve the passcode hash via a certain c 10 value over Bluetooth.
Published 2022-06-02 · Modified
7.4EPSS 0.008