← Back

I Doo

i-doo

1 CVE • 1 product

Products (1)

Click to collapse
Toggle
Veryfitpro
veryfitpro

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1I Doo
1Veryfitpro
Nov 21, 2024
Jun 16, 2021
N/A· v4
8.1 HIGH· v3
4.3 MEDIUM· v2
The VeryFitPro (com.veryfit2hr.second) application 3.2.8 for Android does all communication with the backend API over cleartext HTTP. This includes logins, registrations, and password change requests. This allows informa...Show more
The VeryFitPro (com.veryfit2hr.second) application 3.2.8 for Android does all communication with the backend API over cleartext HTTP. This includes logins, registrations, and password change requests. This allows information theft and account takeover via network sniffing.Show less