CVE-2024-42496
2.4
Vector
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 0.9 / Impact: 1.4
Source: vultures@jpcert.or.jp (Secondary)
Description
Smart-tab Android app installed April 2023 or earlier contains an issue with plaintext storage of a password. If this vulnerability is exploited, an attacker with physical access to the device may retrieve the credential information and spoof the device to access the related external service.
Related CWEs
References (2)
Source: vultures@jpcert.or.jp
Source: vultures@jpcert.or.jp
Timeline
No history available yet.