CVE-2024-38280

An unauthorized user is able to gain access to sensitive data, including credentials, by physically retrieving the hard disk of the product as the data is stored in clear text.
References
Link Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-24-165-19 Third Party Advisory US Government Resource
https://www.cisa.gov/news-events/ics-advisories/icsa-24-165-19 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:motorola:vigilant_fixed_lpr_coms_box_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:motorola:vigilant_fixed_lpr_coms_box:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-06-13 17:15

Updated : 2024-11-21 09:25


NVD link : CVE-2024-38280

Mitre link : CVE-2024-38280

CVE.ORG link : CVE-2024-38280


JSON object : View

Products Affected

motorola

  • vigilant_fixed_lpr_coms_box
  • vigilant_fixed_lpr_coms_box_firmware
CWE
CWE-313

Cleartext Storage in a File or on Disk

CWE-312

Cleartext Storage of Sensitive Information