Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jw33-89vh-mrpp

Опубликовано: 11 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Android App 'Wolt Delivery: Food and more' version 4.27.2 and earlier uses hard-coded credentials (API key for an external service), which may allow a local attacker to obtain the hard-coded API key via reverse-engineering the application binary.

Android App 'Wolt Delivery: Food and more' version 4.27.2 and earlier uses hard-coded credentials (API key for an external service), which may allow a local attacker to obtain the hard-coded API key via reverse-engineering the application binary.

EPSS

Процентиль: 10%
0.00035
Низкий

7.8 High

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 7.8
nvd
почти 3 года назад

Android App 'Wolt Delivery: Food and more' version 4.27.2 and earlier uses hard-coded credentials (API key for an external service), which may allow a local attacker to obtain the hard-coded API key via reverse-engineering the application binary.

EPSS

Процентиль: 10%
0.00035
Низкий

7.8 High

CVSS3

Дефекты

CWE-798