CVE-2024-54728

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 27, 2025
Updated: Feb 3, 2025
CWE ID 601
CWE ID 922

Summary

CVE-2024-54728 is a newly disclosed vulnerability affecting the BYD QIN PLUS DM-i Dilink OS 3.0_13.1.7.2204050.1. This issue stems from an incorrect access control mechanism, enabling unauthorized attackers to gain privileged access to system logcat logs. The consequence of this vulnerability could lead to the exposure of sensitive information, potentially allowing attackers to uncover valuable data or insights about the targeted system. The exact implications of this vulnerability are still being evaluated, but it is recommended that affected users upgrade to the latest version of Dilink OS as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share