CVE-2024-3124

low

Description

A vulnerability classified as problematic has been found in fridgecow smartalarm 1.8.1 on Android. This affects an unknown part of the file androidmanifest.xml of the component Backup File Handler. The manipulation leads to exposure of backup file to an unauthorized control sphere. It is possible to launch the attack on the physical device. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-258867.

References

https://vuldb.com/?submit.307752

https://vuldb.com/?id.258867

https://vuldb.com/?ctiid.258867

https://github.com/ctflearner/Android_Findings/blob/main/Smartalarm/Backup.md

Details

Source: Mitre, NVD

Published: 2024-04-01

Updated: 2026-04-15

Risk Information

CVSS v2

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

Severity: Low

CVSS v3

Base Score: 2.4

Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Severity: Low

EPSS

EPSS: 0.00067