Логотип exploitDog
bind:CVE-2025-20615
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-20615

Количество 2

Количество 2

nvd логотип

CVE-2025-20615

12 месяцев назад

The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file. This allows an attacker to log in to production-level development accounts and access an engineering backdoor in the application. The engineering backdoor allows the attacker to send hex-based commands over a UI-based terminal.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-rjrq-626c-q262

12 месяцев назад

The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file. This allows an attacker to log in to production-level development accounts and access an engineering backdoor in the application. The engineering backdoor allows the attacker to send hex-based commands over a UI-based terminal.

CVSS3: 6.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-20615

The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file. This allows an attacker to log in to production-level development accounts and access an engineering backdoor in the application. The engineering backdoor allows the attacker to send hex-based commands over a UI-based terminal.

CVSS3: 6.2
0%
Низкий
12 месяцев назад
github логотип
GHSA-rjrq-626c-q262

The Qardio Arm iOS application exposes sensitive data such as usernames and passwords in a plist file. This allows an attacker to log in to production-level development accounts and access an engineering backdoor in the application. The engineering backdoor allows the attacker to send hex-based commands over a UI-based terminal.

CVSS3: 6.2
0%
Низкий
12 месяцев назад

Уязвимостей на страницу