CVE-2020-27373 describes a critical vulnerability in the Dr Trust USA iCheck Connect BP Monitor BP Testing 118 (firmware version 1.2.1), where plain text commands are transmitted over Bluetooth Low Energy (BLE). This allows an adjacent attacker to achieve high impact on confidentiality, integrity, and availability without requiring user interaction, as reflected by its CVSSv3.1 score of 8.8 (High). While no public exploit code, Metasploit modules, or Nuclei templates are currently available, and there is minimal community discussion or media coverage, the vulnerability's nature poses a significant risk to affected devices.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.2.1CPE matchmatch criteria | cpe:2.3:o:drtrustusa:icheck_connect_bp_monitor_bp_testing_118_firmware:1.2.1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.