CVE-2026-5454 - CERT CVE
ID CVE-2026-5454
Sažetak A vulnerability was found in GRID Organiser App up to 1.0.5 on Android. Impacted is an unknown function of the file file res/raw/app.json of the component co.gridapp.organiser. Performing a manipulation of the argument SegmentWriteKey results in use of hard-coded cryptographic key . The attack is only possible with local access. The exploit has been made public and could be used.
Reference
CVSS
Base: 1.7
Impact: 2.9
Exploitability:3.1
Pristup
VektorSloženostAutentikacija
LOCAL LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL NONE NONE
CVSS vektor AV:L/AC:L/Au:S/C:P/I:N/A:N
Zadnje važnije ažuriranje 03-04-2026 - 16:10
Objavljeno 03-04-2026 - 05:16