CVE-2022-40703 - CERT CVE
ID CVE-2022-40703
Sažetak CWE-302 Authentication Bypass by Assumed-Immutable Data in AliveCor Kardia App version 5.17.1-754993421 and prior on Android allows an unauthenticated attacker with physical access to the Android device containing the app to bypass application authentication and alter information in the app.
Reference
CVSS
Base: 6.1
Impact: 5.2
Exploitability:0.9
Pristup
VektorSloženostAutentikacija
PHYSICAL LOW -
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH NONE
CVSS vektor CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Zadnje važnije ažuriranje 07-11-2023 - 03:52
Objavljeno 26-10-2022 - 21:15