Flock Safety Gunshot Detection Devices Cleartext Code Storage Vulnerability
Vulnerability
A vulnerability exists in Flock Safety's gunshot detection devices, prior to version 1.3, due to the cleartext storage of code. This issue allows for potential unauthorized access to sensitive information, as the code is not encrypted and could be intercepted or read by individuals with physical access to the device.
Impact
The vulnerability could lead to unauthorized access to the device's code, which may contain sensitive information or create opportunities for further exploitation. However, according to Flock, the likelihood of exploitation is low, as it would require physical access to the device and knowledge of debugging.
Remediation
Flock Safety plans to address this vulnerability through Over the Air Updates and improved factory settings for new devices, starting in Q2 2025.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
