CVE-2020-6653

Eaton's Secure connect mobile app v1.7.3 & prior stores the user login credentials in logcat file when user create or register the account on the Mobile app. A malicious app or unauthorized user can harvest the information and later on can use the information to monitor and control the user's account and associated devices.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:eaton:secureconnect:*:*:*:*:*:android:*:*

Information

Published : 2020-08-12 10:15

Updated : 2020-08-19 06:48


NVD link : CVE-2020-6653

Mitre link : CVE-2020-6653


JSON object : View

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-532

Insertion of Sensitive Information into Log File

Advertisement

dedicated server usa

Products Affected

eaton

  • secureconnect