← Back

Contacts Backup & Restore

contacts_backup_&_restore

Vendor: Nq • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Nq
1Contacts Backup & Restore
May 13, 2026
Oct 29, 2017
N/A· v4
9.8 CRITICAL· v3
5.0 MEDIUM· v2
In the "NQ Contacts Backup & Restore" application 1.1 for Android, no HTTPS is used for transmitting login and synced user data. When logging in, the username is transmitted in cleartext along with an SHA-1 hash of the p...Show more
In the "NQ Contacts Backup & Restore" application 1.1 for Android, no HTTPS is used for transmitting login and synced user data. When logging in, the username is transmitted in cleartext along with an SHA-1 hash of the password. The attacker can either crack this hash or use it for further attacks where only the hash value is required.Show less
1Nq
1Contacts Backup & Restore
May 13, 2026
Oct 29, 2017
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
In the "NQ Contacts Backup & Restore" application 1.1 for Android, DES encryption with a static key is used to secure transmitted contact data. This makes it easier for remote attackers to obtain cleartext information by...Show more
In the "NQ Contacts Backup & Restore" application 1.1 for Android, DES encryption with a static key is used to secure transmitted contact data. This makes it easier for remote attackers to obtain cleartext information by sniffing the network.Show less
1Nq
1Contacts Backup & Restore
May 13, 2026
Oct 29, 2017
N/A· v4
7.8 HIGH· v3
2.1 LOW· v2
In the "NQ Contacts Backup & Restore" application 1.1 for Android, RC4 encryption is used to secure the user password locally stored in shared preferences. Because there is a static RC4 key, an attacker can gain access t...Show more
In the "NQ Contacts Backup & Restore" application 1.1 for Android, RC4 encryption is used to secure the user password locally stored in shared preferences. Because there is a static RC4 key, an attacker can gain access to user credentials more easily by leveraging access to the preferences XML file.Show less