ZeroHour

CVE-2017-9820

CVSS 3.0
9.8 critical
EPSS
2%p78
Published
()
Modified
Description

The National Payments Corporation of India BHIM application 1.3 for Android uses a custom keypad for which the input element is available to the Accessibility service, which makes it easier for attackers to bypass authentication.

Vendors
npci
Products
bharat interface for money \(bhim\)
Weakness
CWE-287
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.