1 results (0.012 seconds)

CVSS: 6.4EPSS: 0%CPEs: 3EXPL: 0

The Kaixin001 (com.kaixin001.activity) application 1.3.1 and 1.3.3 for Android does not properly protect data, which allows remote attackers to read or modify contact information and a cleartext password via a crafted application. La aplicación Kaixin001 (com.kaixin001.activity) v1.3.1 y v1.3.3 para Android no protege correctamente los datos, lo que permite a atacantes remotos leer o modificar información de contacto y una contraseña en texto claro a través de una aplicación manipulada • http://www4.comp.polyu.edu.hk/~appsec/bugs/CVE-2011-4866-vulnerability-in-Kaixin001.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •