Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-6294

Опубликовано: 25 июн. 2024
Источник: nvd
CVSS3: 3.9
EPSS Низкий

Описание

udn News Android APP stores the user session in logcat file when user log into the APP. A malicious APP or an attacker with physical access to the Android device can retrieve this session and use it to log into the news APP and other services provided by udn.

EPSS

Процентиль: 31%
0.00118
Низкий

3.9 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.9
github
больше 1 года назад

udn News Android APP stores the user session in logcat file when user log into the APP. A malicious APP or an attacker with physical access to the Android device can retrieve this session and use it to log into the news APP and other services provided by udn.

EPSS

Процентиль: 31%
0.00118
Низкий

3.9 Low

CVSS3

Дефекты

CWE-200