CVE-2019-20472

Medium severity, CVSS 6.2. EPSS: 0.3% chance of exploitation in the next 30 days.

An issue was discovered on One2Track 2019-12-08 devices. Any SIM card used with the device cannot have a PIN configured. If a PIN is configured, the device simply produces a "Remove PIN and restart!" message, and cannot be used. This makes it easier for an attacker to use the SIM card by stealing the device.

Published 2024-11-07. Last modified 2026-06-17.