Описание
A potential security vulnerability caused by incomplete obfuscation of application configuration information was discovered in Tommy Hilfiger TH24/7 Android app versions 2.0.0.11, 2.0.1.14, 2.1.0.16, and 2.2.0.19. HP has no access to customer data as a result of this issue.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:hp:tommy_hilfiger_th24\/7:2.0.0.11:*:*:*:*:android:*:*
cpe:2.3:a:hp:tommy_hilfiger_th24\/7:2.0.1.14:*:*:*:*:android:*:*
cpe:2.3:a:hp:tommy_hilfiger_th24\/7:2.1.0.16:*:*:*:*:android:*:*
cpe:2.3:a:hp:tommy_hilfiger_th24\/7:2.2.0.19:*:*:*:*:android:*:*
EPSS
Процентиль: 30%
0.0011
Низкий
2.1 Low
CVSS3
2.1 Low
CVSS2
Дефекты
CWE-254
Связанные уязвимости
CVSS3: 2.1
github
больше 3 лет назад
A potential security vulnerability caused by incomplete obfuscation of application configuration information was discovered in Tommy Hilfiger TH24/7 Android app versions 2.0.0.11, 2.0.1.14, 2.1.0.16, and 2.2.0.19. HP has no access to customer data as a result of this issue.
EPSS
Процентиль: 30%
0.0011
Низкий
2.1 Low
CVSS3
2.1 Low
CVSS2
Дефекты
CWE-254