CVE-2023-46916: Maximawatches Maxima Max Pro Power Firmware
Medium severity, CVSS 4.3. EPSS: 0.5% chance of exploitation in the next 30 days.
Maxima Max Pro Power 1.0 486A devices allow BLE traffic replay. An attacker can use GATT characteristic handle 0x0012 to perform potentially disruptive actions such as starting a Heart Rate monitor.
Affected products
- Maximawatches Maxima Max Pro Power Firmware: version 1.0_486a only
Published 2023-12-07. Last modified 2026-06-17.