CVE-2024-38280
13.06.2024, 17:15
An unauthorized user is able to gain access to sensitive data, including credentials, by physically retrieving the hard disk of the product as the data is stored in clear text.Enginsight
Vendor | Product | Version |
---|---|---|
motorola | vigilant_fixed_lpr_coms_box_firmware | 𝑥 ≤ 3.1.171.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-313 - Cleartext Storage in a File or on DiskThe application stores sensitive information in cleartext in a file, or on disk.
- CWE-312 - Cleartext Storage of Sensitive InformationThe product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.