Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-14711

Опубликовано: 13 нояб. 2017
Источник: nvd
CVSS3: 8.1
CVSS2: 4.3
EPSS Низкий

Описание

The Kickbase GmbH "Kickbase Bundesliga Manager" app before 2.2.1 -- aka kickbase-bundesliga-manager/id678241305 -- for iOS is vulnerable to a credentials leak due to transmitting a username and password in cleartext from client to server during registration and authentication.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:kickbase:bundesliga_manager:*:*:*:*:*:iphone_os:*:*
Версия до 2.2.1 (исключая)

EPSS

Процентиль: 43%
0.00206
Низкий

8.1 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 8.1
github
больше 3 лет назад

The Kickbase GmbH "Kickbase Bundesliga Manager" app before 2.2.1 -- aka kickbase-bundesliga-manager/id678241305 -- for iOS is vulnerable to a credentials leak due to transmitting a username and password in cleartext from client to server during registration and authentication.

EPSS

Процентиль: 43%
0.00206
Низкий

8.1 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-522