CVE-2023-46870: Nordicsemi Nrf Sniffer For Bluetooth

High severity, CVSS 7.3. EPSS: 0.4% chance of exploitation in the next 30 days.

extcap/nrf_sniffer_ble.py, extcap/nrf_sniffer_ble.sh, extcap/SnifferAPI/*.py in Nordic Semiconductor nRF Sniffer for Bluetooth LE 3.0.0, 3.1.0, 4.0.0, 4.1.0, and 4.1.1 have set incorrect file permission, which allows attackers to do code execution via modified bash and python scripts.

Affected products

  • Nordicsemi Nrf Sniffer For Bluetooth: version 3.0.0 only; version 3.1.0 only; version 4.0.0 only; version 4.1.0 only; version 4.1.1 only

Published 2024-05-14. Last modified 2026-06-17.