CVE-2024-45832
Last modified
CVE-2024-45832 is a low-severity vulnerability rated 2/10 on the CVSS scale. Hard-coded credentials were included as part of the application binary. These credentials served as part of the application authentication flow and communication with the mobile application. EPSS estimates a 0.28% chance of exploitation in the next 30 days.
Description
Hard-coded credentials were included as part of the application binary. These credentials served as part of the application authentication flow and communication with the mobile application. An attacker could access unauthorized information.
Metrics
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-45832?
How severe is CVE-2024-45832?
How do I fix CVE-2024-45832?
Are you affected by CVE-2024-45832?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
