Get the latest tech news

CISA Advisory on Motorola Solutions ALPR Vulnerabilities


gilant License Plate Readers 1. EXECUTIVE SUMMARY - CVSS v4 8.7 - ATTENTION: Exploitable remotely/low attack complexity - Vendor: Motorola Solutions - Equipment: Vigilant Fixed LPR Coms Box (BCAV1F2-C600) - Vulnerabilities: Authentication Bypass Using an Alternate Path or Channel, Cleartext Storage in a File or on Disk, Use of Hard-coded Credentials, Insufficiently Protected Credentials, Missing Encryption of Sensitive Data, Authentication Bypass by Capture-replay 2.

CVSS v4 8.7 ATTENTION: Exploitable remotely/low attack complexity Vendor: Motorola Solutions Equipment: Vigilant Fixed LPR Coms Box (BCAV1F2-C600) Vulnerabilities: Authentication Bypass Using an Alternate Path or Channel, Cleartext Storage in a File or on Disk, Use of Hard-coded Credentials, Insufficiently Protected Credentials, Missing Encryption of Sensitive Data, Authentication Bypass by Capture-replay The affected product is vulnerable to an attacker modifying the bootloader by using custom arguments to bypass authentication and gain access to the file system and obtain password hashes. Organizations observing suspected malicious activity should follow established internal procedures and report findings to CISA for tracking and correlation against other incidents.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Motorola

Motorola

Photo of cisa advisory

cisa advisory

Related news:

News photo

Motorola Razr Plus 2023: How it started and how it's going

News photo

The next Motorola Razr foldables will launch very soon in the US

News photo

The Motorola Razr 2024 series' debut is just around the corner