CVE-2020-5589

SONY Wireless Headphones WF-1000X, WF-SP700N, WH-1000XM2, WH-1000XM3, WH-CH700N, WH-H900N, WH-XB700, WH-XB900N, WI-1000X, WI-C600N and WI-SP600N with firmware versions prior to 4.5.2 have vulnerability that someone within the Bluetooth range can make the Bluetooth pairing and operate such as changing volume of the product.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
jpcertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
VendorProductVersion
sonywf-1000x_firmware
-
sonywf-sp700n_firmware
-
sonywh-1000xm2_firmware
-
sonywh-1000xm3_firmware
-
sonywh-ch700n_firmware
-
sonywh-h900n_firmware
-
sonywh-xb700_firmware
-
sonywh-xb900n_firmware
-
sonywi-1000x_firmware
-
sonywi-c600n_firmware
-
sonywi-sp600n_firmware
-
𝑥
= Vulnerable software versions