Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-22362

Опубликовано: 13 фев. 2023
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

SUSHIRO App for Android outputs sensitive information to the log file, which may result in an attacker obtaining a credential information from the log file. Affected products/versions are as follows: SUSHIRO Ver.4.0.31, Thailand SUSHIRO Ver.1.0.0, Hong Kong SUSHIRO Ver.3.0.2, Singapore SUSHIRO Ver.2.0.0, and Taiwan SUSHIRO Ver.2.0.1

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:akindo-sushiro:hong_kong_sushiro:3.0.3:*:*:*:*:android:*:*
cpe:2.3:a:akindo-sushiro:singapore_sushiro:2.0.3:*:*:*:*:android:*:*
cpe:2.3:a:akindo-sushiro:sushiro:4.0.31:*:*:*:*:android:*:*
cpe:2.3:a:akindo-sushiro:taiwan_sushiro:2.0.3:*:*:*:*:android:*:*
cpe:2.3:a:akindo-sushiro:thailand_sushiro:2.0.3:*:*:*:*:android:*:*

EPSS

Процентиль: 42%
0.00197
Низкий

7.5 High

CVSS3

Дефекты

CWE-532
CWE-532

Связанные уязвимости

CVSS3: 7.5
github
почти 3 года назад

SUSHIRO App for Android outputs sensitive information to the log file, which may result in an attacker obtaining a credential information from the log file. Affected products/versions are as follows: SUSHIRO Ver.4.0.31, Thailand SUSHIRO Ver.1.0.0, Hong Kong SUSHIRO Ver.3.0.2, Singapore SUSHIRO Ver.2.0.0, and Taiwan SUSHIRO Ver.2.0.1

EPSS

Процентиль: 42%
0.00197
Низкий

7.5 High

CVSS3

Дефекты

CWE-532
CWE-532