CVE-2024-3479

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published May 3, 2024
CWE ID 77

Summary

CVE-2024-3479 is a vulnerability affecting the Motorola Enterprise MotoDpms Provider (com.motorola.server.enterprise.MotoDpmsProvider). This issue involves an improper export function which can be exploited by a local attacker to gain unauthorized access to local data. The vulnerability allows the attacker to bypass intended access controls, potentially leading to confidential information disclosure. This issue can pose a significant risk to the security and privacy of affected systems. It is recommended that users of the Motorola Enterprise MotoDpms Provider apply the necessary patches as soon as they become available to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share