// For flags

CVE-2023-48419

An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in EoP

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

An attacker in the wifi vicinity of a target Google Home can spy on the victim, resulting in Elevation of Privilege

Un atacante en las proximidades wifi de un Google Home objetivo puede espiar a la víctima, lo que resulta en una elevación de privilegios.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2023-11-16 CVE Reserved
  • 2024-01-02 CVE Published
  • 2024-01-10 EPSS Updated
  • 2024-08-02 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-269: Improper Privilege Management
CAPEC
  • CAPEC-122: Privilege Abuse
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Google
Search vendor "Google"
Nest Audio Firmware
Search vendor "Google" for product "Nest Audio Firmware"
< 2.58
Search vendor "Google" for product "Nest Audio Firmware" and version " < 2.58"
-
Affected
in Google
Search vendor "Google"
Nest Audio
Search vendor "Google" for product "Nest Audio"
--
Safe
Google
Search vendor "Google"
Nest Mini Firmware
Search vendor "Google" for product "Nest Mini Firmware"
< 2.58
Search vendor "Google" for product "Nest Mini Firmware" and version " < 2.58"
-
Affected
in Google
Search vendor "Google"
Nest Mini
Search vendor "Google" for product "Nest Mini"
--
Safe
Google
Search vendor "Google"
Home Mini Firmware
Search vendor "Google" for product "Home Mini Firmware"
< 2.58
Search vendor "Google" for product "Home Mini Firmware" and version " < 2.58"
-
Affected
in Google
Search vendor "Google"
Home Mini
Search vendor "Google" for product "Home Mini"
--
Safe
Google
Search vendor "Google"
Home Firmware
Search vendor "Google" for product "Home Firmware"
< 2.58
Search vendor "Google" for product "Home Firmware" and version " < 2.58"
-
Affected
in Google
Search vendor "Google"
Home
Search vendor "Google" for product "Home"
--
Safe