CVE-2024-9334
8.2
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Exploitability: 3.9 / Impact: 4.2
Source: iletisim@usom.gov.tr (Secondary)
Description
Use of Hard-coded Credentials, Storage of Sensitive Data in a Mechanism without Access Control vulnerability in E-Kent Pallium Vehicle Tracking allows Authentication Bypass.
This issue affects Pallium Vehicle Tracking: before 17.10.2024.
Related CWEs
CWE-798
Use of Hard-coded Credentials
The product contains hard-coded credentials, such as a password or cryptographic key.
CWE-921
Storage of Sensitive Data in a Mechanism without Access Control
The product stores sensitive information in a file system or device that does not have built-in access control.
References (2)
Source: iletisim@usom.gov.tr
Source: iletisim@usom.gov.tr
Timeline
No history available yet.