Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credentials and log data over a cleartext HTTP connection, which allows attackers to obtain sensitive information by reading the registry or sniffing the network.
References
Configurations
Information
Published : 2007-11-01 09:46
Updated : 2018-10-15 14:46
NVD link : CVE-2007-5778
Mitre link : CVE-2007-5778
JSON object : View
Products Affected
mobile-spy
- mobile-spy