Bash files can be used on their own, by an attacker that has already
full access to the mobile platform to compromise the translations for
the application.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-52652 | Multiple bash files were present in the application's private directory. Bash files can be used on their own, by an attacker that has already full access to the mobile platform to compromise the translations for the application. |
Solution
Ossur recommends users download Version 1.5.5 or later of the mobile application. The latest version of the application can be obtained through the app store on respective mobile devices. No additional action is required by users.
Workaround
No workaround given by the vendor.
Tue, 21 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 17 Jan 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Multiple bash files were present in the application's private directory. Bash files can be used on their own, by an attacker that has already full access to the mobile platform to compromise the translations for the application. | |
| Title | Ossur Mobile Logic Application Command Injection | |
| Weaknesses | CWE-77 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-01-21T16:40:59.307Z
Reserved: 2024-12-17T14:11:48.995Z
Link: CVE-2024-54681
Updated: 2025-01-21T16:40:56.100Z
Status : Received
Published: 2025-01-17T17:15:12.227
Modified: 2025-01-17T17:15:12.227
Link: CVE-2024-54681
No data.
OpenCVE Enrichment
No data.
EUVD