CVE-2018-15753

An issue was discovered in the MensaMax (aka com.breustedt.mensamax) application 4.3 for Android. The use of a Hard-coded DES Cryptographic Key allows an attacker who decodes the application to decrypt transmitted data such as the login username and password.
References
Link Resource
https://seclists.org/bugtraq/2018/Oct/3 Exploit Mailing List Third Party Advisory
https://advisories.e2security.de/2018/E2SA-2018-01.txt Exploit Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:mensamax:mensamax:4.3:*:*:*:*:android:*:*

Information

Published : 2018-10-02 11:29

Updated : 2018-11-25 05:35


NVD link : CVE-2018-15753

Mitre link : CVE-2018-15753


JSON object : View

CWE
CWE-798

Use of Hard-coded Credentials

Advertisement

dedicated server usa

Products Affected

mensamax

  • mensamax