Vulnerabilities > Motorola > Vigilant Fixed LPR Coms BOX Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-38279 Missing Authentication for Critical Function vulnerability in Motorola Vigilant Fixed LPR Coms BOX Firmware
The affected product is vulnerable to an attacker modifying the bootloader by using custom arguments to bypass authentication and gain access to the file system and obtain password hashes.
low complexity
motorola CWE-306
4.6
2024-06-13 CVE-2024-38280 Cleartext Storage of Sensitive Information vulnerability in Motorola Vigilant Fixed LPR Coms BOX Firmware
An unauthorized user is able to gain access to sensitive data, including credentials, by physically retrieving the hard disk of the product as the data is stored in clear text.
low complexity
motorola CWE-312
4.6
2024-06-13 CVE-2024-38281 Use of Hard-coded Credentials vulnerability in Motorola Vigilant Fixed LPR Coms BOX Firmware
An attacker can access the maintenance console using hard coded credentials for a hidden wireless network on the device.
network
low complexity
motorola CWE-798
critical
9.8