Back to search
CVE-2019-13604
Published: Jul 15, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
There is a short key vulnerability in HID Global DigitalPersona (formerly Crossmatch) U.are.U 4500 Fingerprint Reader v24. The key for obfuscating the fingerprint image is vulnerable to brute-force attacks. This allows an attacker to recover the key and decrypt that image using the key. Successful exploitation causes a sensitive biometric information leak.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://github.com/sungjungk/fp-img-key-crack
x_refsource_MISC
https://www.youtube.com/watch?v=BwYK_xZlKi4
x_refsource_MISC
https://www.youtube.com/watch?v=7tKJQdKRm2k
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now