Vulnerabilities > CVE-2022-1740 - Mutable Attestation or Measurement Reporting Data vulnerability in Dominionvoting Imagecast X 5.5.10.30/5.5.10.32

047910
CVSS 4.6 - MEDIUM
Attack vector
PHYSICAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
low complexity
dominionvoting
CWE-1283

Summary

The tested version of Dominion Voting Systems ImageCast X’s on-screen application hash display feature, audit log export, and application export functionality rely on self-attestation mechanisms. An attacker could leverage this vulnerability to disguise malicious applications on a device.