CVE-2024-38279: Authentication Bypass Using an Alternate Path or Channel in Motorola Solutions Vigilant Fixed LPR Coms Box (BCAV1F2-C600)
The affected product is vulnerable to an attacker modifying the bootloader by using custom arguments to bypass authentication and gain access to the file system and obtain password hashes.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-38279?
CVE-2024-38279 is considered high severity due to its potential for unauthorized access and exploitation.
How do I fix CVE-2024-38279?
To fix CVE-2024-38279, update the Motorola Vigilant Fixed LPR Coms Box Firmware to a version later than 3.1.171.9.
What impact does CVE-2024-38279 have on affected systems?
CVE-2024-38279 allows attackers to modify the bootloader and gain unauthorized access to sensitive data, such as password hashes.
Which products are affected by CVE-2024-38279?
CVE-2024-38279 affects the Motorola Vigilant Fixed LPR Coms Box Firmware versions up to 3.1.171.9.
Is there a known exploit for CVE-2024-38279?
Yes, CVE-2024-38279 is vulnerable to exploitation that allows attackers to bypass authentication using custom bootloader arguments.