PT-2024-33144 · Wear Sync · Wear Sync

CVE-2024-48546

·

Published

2024-10-24

·

Updated

2024-10-25

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Wear Sync version 1.2.0
Description The issue is related to incorrect access control in the firmware update and download processes. This allows attackers to access sensitive information by analyzing the code and data within the APK file.
Recommendations For Wear Sync version 1.2.0, update to a newer version that addresses the incorrect access control issue in the firmware update and download processes.

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-48546

Affected Products

Wear Sync