Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vrfc-3whc-j2hq

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credentials and log data over a cleartext HTTP connection, which allows attackers to obtain sensitive information by reading the registry or sniffing the network.

Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credentials and log data over a cleartext HTTP connection, which allows attackers to obtain sensitive information by reading the registry or sniffing the network.

EPSS

Процентиль: 47%
0.00242
Низкий

7.5 High

CVSS3

Дефекты

CWE-312

Связанные уязвимости

CVSS3: 7.5
nvd
больше 18 лет назад

Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credentials and log data over a cleartext HTTP connection, which allows attackers to obtain sensitive information by reading the registry or sniffing the network.

EPSS

Процентиль: 47%
0.00242
Низкий

7.5 High

CVSS3

Дефекты

CWE-312