CWE-302 Authentication Bypass by Assumed-Immutable Data in AliveCor Kardia App versionĀ 5.17.1-754993421 and prior on Android allows an unauthenticated attacker with physical access to the Android device containing the app to bypass application authentication and alter information in the app.
History

Wed, 16 Apr 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-04-16T16:08:38.405Z

Reserved: 2022-09-29T14:09:27.500Z

Link: CVE-2022-40703

cve-icon Vulnrichment

Updated: 2024-08-03T12:21:46.771Z

cve-icon NVD

Status : Modified

Published: 2022-10-26T21:15:10.637

Modified: 2024-11-21T07:21:53.537

Link: CVE-2022-40703

cve-icon Redhat

No data.