CVE-2016-10702: Pebble Firmware

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

Pebble Smartwatch devices through 4.3 mishandle UUID storage, which allows attackers to read an arbitrary application's flash storage, and access an arbitrary application's JavaScript instance, by modifying a UUID value within the header of a crafted application binary.

Affected products

  • Pebble Pebble Firmware: up to and including 4.3

Published 2017-11-28. Last modified 2026-06-17.