ArmorX Android APP's multi-factor authentication (MFA) for the login function is not properly implemented. Remote attackers who obtain user credentials can bypass MFA, allowing them to successfully log into the APP.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-32853 ArmorX Android APP's multi-factor authentication (MFA) for the login function is not properly implemented. Remote attackers who obtain user credentials can bypass MFA, allowing them to successfully log into the APP.
Fixes

Solution

Update to v.1.5.3 or later version (release on 20230919)


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-08-01T20:33:53.173Z

Reserved: 2024-04-29T03:23:16.491Z

Link: CVE-2024-4303

cve-icon Vulnrichment

Updated: 2024-08-01T20:33:53.173Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-29T06:15:18.457

Modified: 2024-11-21T09:42:34.883

Link: CVE-2024-4303

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses