Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j7q4-4r7g-3jf4

Опубликовано: 16 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 5.3

Описание

The MiCard PLUS Ci and MiCard PLUS BLE reader products developed by rf IDEAS and rebranded by NT-ware have a firmware fault that may result in characters randomly being dropped from some ID card reads, which would result in the wrong ID card number being assigned during ID card self-registration and might result in failed login attempts for end-users. Random characters being dropped from ID card numbers compromises the uniqueness of ID cards that can, therefore, result in a security issue if the users are using the ‘ID card self-registration’ function.

The MiCard PLUS Ci and MiCard PLUS BLE reader products developed by rf IDEAS and rebranded by NT-ware have a firmware fault that may result in characters randomly being dropped from some ID card reads, which would result in the wrong ID card number being assigned during ID card self-registration and might result in failed login attempts for end-users. Random characters being dropped from ID card numbers compromises the uniqueness of ID cards that can, therefore, result in a security issue if the users are using the ‘ID card self-registration’ function.

EPSS

Процентиль: 39%
0.00179
Низкий

5.3 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-1287

Связанные уязвимости

CVSS3: 5.3
nvd
больше 1 года назад

The MiCard PLUS Ci and MiCard PLUS BLE reader products developed by rf IDEAS and rebranded by NT-ware have a firmware fault that may result in characters randomly being dropped from some ID card reads, which would result in the wrong ID card number being assigned during ID card self-registration and might result in failed login attempts for end-users. Random characters being dropped from ID card numbers compromises the uniqueness of ID cards that can, therefore, result in a security issue if the users are using the ‘ID card self-registration’ function.

EPSS

Процентиль: 39%
0.00179
Низкий

5.3 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-1287