An issue was discovered in Mahavitaran android application 7.50 and below, allows local attackers to read cleartext username and password while the user is logged into the application.
References
Link | Resource |
---|---|
https://play.google.com/store/apps/details?id=com.msedcl.app&utm_source=APKdownloadMirror.com | Third Party Advisory |
http://maharashtra.com | Broken Link Vendor Advisory |
https://cvewalkthrough.com/cve-2020-27413-mahavitaran-android-application-clear-text-password-storage/ | Third Party Advisory |
http://mahavitaran.com | Vendor Advisory |
Configurations
Information
Published : 2021-12-07 06:15
Updated : 2021-12-08 07:53
NVD link : CVE-2020-27413
Mitre link : CVE-2020-27413
JSON object : View
CWE
CWE-522
Insufficiently Protected Credentials
Products Affected
mahadiscom
- mahavitaran