Hard Disk Data Access Vulnerability Discovered
CVE-2024-38280
4.6MEDIUM
Summary
An unauthorized user is able to gain access to sensitive data, including credentials, by physically retrieving the hard disk of the product as the data is stored in clear text.
Affected Version(s)
Vigilant Fixed LPR Coms Box (BCAV1F2-C600) 0 <= 3.1.171.9
References
CVSS V3.1
Score:
4.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
The Michigan State Police Michigan Cyber Command Center (MC3)