Incorrect access control in the firmware update and download processes of IVY Smart v4.5.0 allows attackers to access sensitive information by analyzing the code and data within the APK file.
References
Configurations
No configuration.
History
25 Oct 2024, 12:56
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
24 Oct 2024, 19:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-863 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.4 |
24 Oct 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-24 17:15
Updated : 2024-10-25 12:56
NVD link : CVE-2024-48545
Mitre link : CVE-2024-48545
CVE.ORG link : CVE-2024-48545
JSON object : View
Products Affected
No product.
CWE
CWE-863
Incorrect Authorization