CVE-2023-38411

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Nov 14, 2023
Updated: Nov 21, 2023
CWE ID 284

Summary

CVE-2023-38411 is a vulnerability affecting the Intel Smart Campus android application prior to version 9.4. This issue involves improper access control, granting authenticated users potentially excessive privileges through local access. By exploiting this vulnerability, an attacker could escalate their privileges within the application, potentially gaining unauthorized access to sensitive information or system functionality. This weakness could lead to serious security consequences, making it crucial for users to update to the latest version of the application as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share