CyberRota Analysis
AI-GeneratedThe SirenGPS Android Application version 2.19.44 is susceptible to incorrect access control, allowing authenticated attackers to exploit user identifier parameters and bypass authorization mechanisms. This vulnerability enables unauthorized READ and WRITE access to other users' personal information, posing significant privacy risks. Organizations using this application should prioritize remediation to protect sensitive user data from potential breaches.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
SirenGPS Android Application 2.19.44 is vulnerable to Incorrect Access Control. An authenticated attacker can manipulate user identifier parameters to bypass authorization controls and gain unauthorized READ and WRITE access to other users' personal information. The API fails to validate that the requesting user is authorized to access the target user's data.