Hard-Coded AES Key Vulnerability in Motorola GuideMe Application
CVE-2024-3109
6.3MEDIUM
What is CVE-2024-3109?
A vulnerability has been identified in the Motorola GuideMe application due to the presence of a hard-coded AES key. This flaw, coupled with insufficient URI sanitation, enables a local attacker to exploit the application. If successfully executed, the attacker can gain unauthorized access to read arbitrary files, potentially compromising sensitive information stored on the device.