Описание
The Kickbase GmbH "Kickbase Bundesliga Manager" app before 2.2.1 -- aka kickbase-bundesliga-manager/id678241305 -- for iOS is vulnerable to a credentials leak due to transmitting a username and password in cleartext from client to server during registration and authentication.
Ссылки
- Issue TrackingThird Party Advisory
- Issue TrackingThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.2.1 (исключая)
cpe:2.3:a:kickbase:bundesliga_manager:*:*:*:*:*:iphone_os:*:*
EPSS
Процентиль: 43%
0.00206
Низкий
8.1 High
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-522
Связанные уязвимости
CVSS3: 8.1
github
больше 3 лет назад
The Kickbase GmbH "Kickbase Bundesliga Manager" app before 2.2.1 -- aka kickbase-bundesliga-manager/id678241305 -- for iOS is vulnerable to a credentials leak due to transmitting a username and password in cleartext from client to server during registration and authentication.
EPSS
Процентиль: 43%
0.00206
Низкий
8.1 High
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-522