PT-2024-33144 · Wear Sync · Wear Sync

Published

2024-10-24

·

Updated

2024-10-25

·

CVE-2024-48546

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Wear Sync version 1.2.0
Description The issue is related to incorrect access control in the firmware update and download processes. This allows attackers to access sensitive information by analyzing the code and data within the APK file.
Recommendations For Wear Sync version 1.2.0, update to a newer version that addresses the incorrect access control issue in the firmware update and download processes.

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2024-48546

Affected Products

Wear Sync