Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-72gv-p948-6p6r

Опубликовано: 03 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 1.9
CVSS3: 3.3

Описание

A vulnerability was detected in Investory Toy Planet Trouble App up to 1.5.5 on Android. Impacted is an unknown function of the file assets/google-services-desktop.json of the component app.investory.toyfactory. The manipulation of the argument current_key results in use of hard-coded cryptographic key . The attack must be initiated from a local position. The exploit is now public and may be used.

A vulnerability was detected in Investory Toy Planet Trouble App up to 1.5.5 on Android. Impacted is an unknown function of the file assets/google-services-desktop.json of the component app.investory.toyfactory. The manipulation of the argument current_key results in use of hard-coded cryptographic key . The attack must be initiated from a local position. The exploit is now public and may be used.

EPSS

Процентиль: 1%
0.00011
Низкий

1.9 Low

CVSS4

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 3.3
nvd
4 дня назад

A vulnerability was detected in Investory Toy Planet Trouble App up to 1.5.5 on Android. Impacted is an unknown function of the file assets/google-services-desktop.json of the component app.investory.toyfactory. The manipulation of the argument current_key results in use of hard-coded cryptographic key . The attack must be initiated from a local position. The exploit is now public and may be used.

EPSS

Процентиль: 1%
0.00011
Низкий

1.9 Low

CVSS4

3.3 Low

CVSS3