CVE-2022-29945
DJI drone devices sold in 2017 through 2022 broadcast unencrypted information about the drone operator's physical location via the AeroScope protocol.
Published:Apr 29, 2022
Last Modified:Nov 21, 2024
EPS:Apr 29, 2022
EPSS Score:0.00206
CVSS Score:4
Affected Products
Vendor
Product
Action
Vendor
Dji
Product
Air 2
Dji
Air 2
Vendor
Dji
Product
Air 2 Firmware
Dji
Air 2 Firmware
Vendor
Dji
Product
Air 2s
Dji
Air 2s
Vendor
Dji
Product
Air 2s Firmware
Dji
Air 2s Firmware
Vendor
Dji
Product
Fhantom 4 Pro
Dji
Fhantom 4 Pro
Vendor
Dji
Product
Fhantom 4 Pro Firmware
Dji
Fhantom 4 Pro Firmware
Vendor
Dji
Product
Fpv
Dji
Fpv
Vendor
Dji
Product
Fpv Firmware
Dji
Fpv Firmware
Vendor
Dji
Product
Inspire 2
Dji
Inspire 2
Vendor
Dji
Product
Inspire 2 Firmware
Dji
Inspire 2 Firmware
Vendor
Dji
Product
Mavic 3
Dji
Mavic 3
Vendor
Dji
Product
Mavic 3 Firmware
Dji
Mavic 3 Firmware
Vendor
Dji
Product
Mini 2
Dji
Mini 2
Vendor
Dji
Product
Mini 2 Firmware
Dji
Mini 2 Firmware
Vendor
Dji
Product
Mini Se
Dji
Mini Se
Vendor
Dji
Product
Mini Se Firmware
Dji
Mini Se Firmware
Vendor
Dji
Product
Rc Pro
Dji
Rc Pro
Vendor
Dji
Product
Rc Pro Firmware
Dji
Rc Pro Firmware
Vendor
Dji
Product
Zenmuse X5s
Dji
Zenmuse X5s
Vendor
Dji
Product
Zenmuse X5s Firmware
Dji
Zenmuse X5s Firmware
Vendor
Dji
Product
Zenmuse X7
Dji
Zenmuse X7
Vendor
Dji
Product
Zenmuse X7 Firmware
Dji
Zenmuse X7 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
