Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-37qf-jwxf-87wg

Опубликовано: 30 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Mobile Scanner Android App version 2.12.38 (package name com.glority.everlens), developed by Glority Global Group Ltd., contains a credential leakage vulnerability. Improper handling of cloud service credentials may allow attackers to obtain them and carry out unauthorized actions, such as sensitive information disclosure and abuse of cloud resources. Successful exploitation could result in privacy breaches and misuse of the platform infrastructure.

Mobile Scanner Android App version 2.12.38 (package name com.glority.everlens), developed by Glority Global Group Ltd., contains a credential leakage vulnerability. Improper handling of cloud service credentials may allow attackers to obtain them and carry out unauthorized actions, such as sensitive information disclosure and abuse of cloud resources. Successful exploitation could result in privacy breaches and misuse of the platform infrastructure.

EPSS

Процентиль: 14%
0.00047
Низкий

7.5 High

CVSS3

Дефекты

CWE-523

Связанные уязвимости

CVSS3: 7.5
nvd
3 месяца назад

Mobile Scanner Android App version 2.12.38 (package name com.glority.everlens), developed by Glority Global Group Ltd., contains a credential leakage vulnerability. Improper handling of cloud service credentials may allow attackers to obtain them and carry out unauthorized actions, such as sensitive information disclosure and abuse of cloud resources. Successful exploitation could result in privacy breaches and misuse of the platform infrastructure.

EPSS

Процентиль: 14%
0.00047
Низкий

7.5 High

CVSS3

Дефекты

CWE-523