Security Advisory

CVE-2017-8866

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-12-11 21:00:00
Last updated 2024-08-05 16:48:22
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Elemental Path's CogniToys Dino smart toys through firmware version 0.0.794 share a fixed small pool of hardcoded keys, allowing a remote attacker to use a different Dino device to decrypt VoIP traffic between a child's Dino and remote server.