. The attack can only be executed locally. The exploit has been published and may be used.
Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 03 Apr 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in UCC CampusConnect App up to 14.3.5 on Android. This vulnerability affects unknown code of the file campusconnect/BuildConfig.java of the component campusconnect.ucc. This manipulation causes use of hard-coded cryptographic key . The attack can only be executed locally. The exploit has been published and may be used. | |
| Title | UCC CampusConnect App campusconnect.ucc BuildConfig.java hard-coded key | |
| Weaknesses | CWE-320 CWE-321 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-03T02:45:09.544Z
Reserved: 2026-04-02T22:08:50.188Z
Link: CVE-2026-5452
No data.
Status : Received
Published: 2026-04-03T04:17:10.950
Modified: 2026-04-03T04:17:10.950
Link: CVE-2026-5452
No data.
OpenCVE Enrichment
No data.