MEDIUM · 5.3

CVE-2021-24046

A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modified through the Facebook View application. This issue affected versions of device ...

Vulnerability Description

A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modified through the Facebook View application. This issue affected versions of device software before 2107460.6810.0.

CVSS Score

5.3

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
LOW
Availability
NONE

Affected Products

VendorProductVersions
Ray-BanStories Rw4003 65582V 48-23 Firmware< 2107460.6810.0
Ray-BanStories Rw4003 65582V 48-23-
Ray-BanStories Rw4002 601\/71 50-22 Firmware< 2107460.6810.0
Ray-BanStories Rw4002 601\/71 50-22-
Ray-BanStories Rw4005 656013 51-20 Firmware< 2107460.6810.0
Ray-BanStories Rw4005 656013 51-20-
Ray-BanStories Rw4005 6563M3 51-20 Firmware< 2107460.6810.0.
Ray-BanStories Rw4005 6563M3 51-20-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-24046?

CVE-2021-24046 is a vulnerability with a CVSS score of 5.3 (MEDIUM). A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modified through the Facebook View application. This issue affected versions of device ...

How severe is CVE-2021-24046?

CVE-2021-24046 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-24046?

Check the references section above for vendor advisories and patch information. Affected products include: Ray-Ban Stories Rw4003 65582V 48-23 Firmware, Ray-Ban Stories Rw4003 65582V 48-23, Ray-Ban Stories Rw4002 601\/71 50-22 Firmware, Ray-Ban Stories Rw4002 601\/71 50-22, Ray-Ban Stories Rw4005 656013 51-20 Firmware.