Hard Disk Data Access Vulnerability Discovered
CVE-2024-38280

4.6MEDIUM

Key Information:

Vendor
CVE Published:
13 June 2024

Summary

An unauthorized user is able to gain access to sensitive data, including credentials, by physically retrieving the hard disk of the product as the data is stored in clear text.

Affected Version(s)

Vigilant Fixed LPR Coms Box (BCAV1F2-C600) 0 <= 3.1.171.9

References

CVSS V3.1

Score:
4.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

The Michigan State Police Michigan Cyber Command Center (MC3)
.