Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6p8w-pqqx-8fpc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Zalora application 6.15.1 for Android stores confidential information insecurely on the system (i.e. plain text), which allows a non-root user to find out the username/password of a valid user via /data/data/com.zalora.android/shared_prefs/login_data.xml.

The Zalora application 6.15.1 for Android stores confidential information insecurely on the system (i.e. plain text), which allows a non-root user to find out the username/password of a valid user via /data/data/com.zalora.android/shared_prefs/login_data.xml.

EPSS

Процентиль: 38%
0.00165
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
почти 7 лет назад

The Zalora application 6.15.1 for Android stores confidential information insecurely on the system (i.e. plain text), which allows a non-root user to find out the username/password of a valid user via /data/data/com.zalora.android/shared_prefs/login_data.xml.

EPSS

Процентиль: 38%
0.00165
Низкий