TVS Motor Company Limited TVS Connect Android v4.6.0 and IOS v5.0.0 was discovered to insecurely handle the RSA key pair, allowing attackers to possibly access sensitive information via decryption.
References
Link | Resource |
---|---|
https://github.com/aaravavi/TVS-Connect-Application-VAPT | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-06-21 17:15
Updated : 2024-06-24 19:40
NVD link : CVE-2024-35537
Mitre link : CVE-2024-35537
CVE.ORG link : CVE-2024-35537
JSON object : View
Products Affected
tvsmotor
- tvs_connect
CWE
CWE-327
Use of a Broken or Risky Cryptographic Algorithm