CVE Published: 16/09/2024 |
CVE Updated: 16/09/2024 |
CVE Year: 2024 Source: Canon_EMEA |
Vendor: Rebranded by NT-ware (originally developed and provided by rf IDEAS) |
Product: MiCard PLUS Ci Status : PUBLISHED
CVE-2024-1578 Description
The MiCard PLUS Ci and MiCard PLUS BLE reader products developed by rf IDEAS and rebranded by NT-ware have a firmware fault that may result in characters randomly being dropped from some ID card reads, which would result in the wrong ID card number being assigned during ID card self-registration and might result in failed login attempts for end-users. Random characters being dropped from ID card numbers compromises the uniqueness of ID cards that can, therefore, result in a security issue if the users are using the ‘ID card self-registration’ function.
CWE-ID: CWE-1287 CWE Name: CWE-1287: Improper Validation of Specified Type of Input Source: Rebranded by NT-ware (originally developed and provided by rf IDEAS)
Common Attack Pattern Enumeration and Classification (CAPEC)