ZeroHour

CVE-2017-9819

CVSS 3.0
9.8 critical
EPSS
2%p81
Published
()
Modified
Description

The National Payments Corporation of India BHIM application 1.3 for Android does not properly restrict use of the OTP feature, which makes it easier for attackers to bypass authentication.

Vendors
npci
Products
bharat interface for money \(bhim\)
Weakness
CWE-287
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.