First published: Thu Jun 13 2024(Updated: )
Logs storing credentials are insufficiently protected and can be decoded through the use of open source tools.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Motorola Vigilant Fixed LPR Coms Box Firmware |
Motorola Solutions recommends the following for each identified vulnerability: CVE-2024-38285: * Delete the log files. Motorola Solutions has already remediated this vulnerability for all vulnerable systems. No further actions are required by customers.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-38285 is classified as a high severity vulnerability due to the potential exposure of sensitive credentials.
To fix CVE-2024-38285, ensure that logs storing credentials are properly encrypted and access controls are implemented.
CVE-2024-38285 specifically affects the Motorola Solutions Vigilant Fixed LPR Coms Box.
The risks associated with CVE-2024-38285 include unauthorized access to sensitive data and potential exploitation by attackers.
As of now, there is no public indication that CVE-2024-38285 is being actively exploited in the wild.