CVE-2024-44754
Severity CVSS v4.0:
Pending analysis
Type:
CWE-522
Insufficiently Protected Credentials
Publication date:
28/02/2025
Last modified:
15/04/2026
Description
Cryptographic key extraction from internal flash in Minut M2 with firmware version #15142 allows physically proximate attackers to inject modified firmware into any other Minut M2 product via USB.
Impact
Base Score 3.x
6.80
Severity 3.x
MEDIUM



