← volver
CVE-2024-45832

Ossur Mobile Logic Application Use of Hard-coded Credentials

CVSS 2 LOWEPSS 0.3%CWE-798
Vexday Risk Score
8Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 2EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
17 ene 2025Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Hard-coded credentials were included as part of the application binary. These credentials served as part of the application authentication flow and communication with the mobile application. An attacker could access unauthorized information.
CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:H/SA:N

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →