CVE-2026-5452
Severity CVSS v4.0:
LOW
Type:
Unavailable / Other
Publication date:
03/04/2026
Last modified:
03/04/2026
Description
A flaw has been found in UCC CampusConnect App up to 14.3.5 on Android. This vulnerability affects unknown code of the file campusconnect/BuildConfig.java of the component campusconnect.ucc. This manipulation causes use of hard-coded cryptographic key<br />
. The attack can only be executed locally. The exploit has been published and may be used.
Impact
Base Score 4.0
1.90
Severity 4.0
LOW
Base Score 3.x
3.30
Severity 3.x
LOW
Base Score 2.0
1.70
Severity 2.0
LOW



