PT-2024-27699 · Unknown · Securestation

Published

2024-12-18

·

Updated

2024-12-31

·

CVE-2024-37649

CVSS v3.1

4.6

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SecureSTATION versions 2.5.5.3116-S50-SMA-B20160811A and before
Description The issue allows a physically proximate attacker to obtain sensitive information via the modification of user credentials. This is due to an Insecure Permissions vulnerability.
Recommendations For SecureSTATION versions 2.5.5.3116-S50-SMA-B20160811A and before, consider updating to a version that addresses the Insecure Permissions issue, as no specific fix is detailed in the provided information. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Preservation of Permissions

Weakness Enumeration

Related Identifiers

CVE-2024-37649

Affected Products

Securestation