← back
CVE-2022-33707

CVE-2022-33707

EPSS 0.7%CWE-334
In short

Find My Mobile before version 7.2.24.12 has a flaw in how it creates device identifiers, allowing someone to figure out which device is being tracked. This could expose your device to unwanted identification.

Technical detail

Improper identifier generation in Find My Mobile's device identification mechanism prior to v7.2.24.12 allows attackers to derive or predict device identifiers through analysis of identifier creation logic. This enables unauthorized device identification and tracking exposure without requiring authentication or special device access.

Summary generated and translated by AI from the official description.
Improper identifier creation logic in Find My Mobile prior to version 7.2.24.12 allows attacker to identify the device.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →