ZeroHour

CVE-2018-11242

PoC
CVSS 3.0
6.5 medium
EPSS
4%p90
Published
()
Modified
Description

An issue was discovered in the MakeMyTrip application 7.2.4 for Android. The databases (locally stored) are not encrypted and have cleartext that might lead to sensitive information disclosure, as demonstrated by data/com.makemytrip/databases and data/com.makemytrip/Cache SQLite database files.

Vendors
makemytrip
Products
makemytrip
Weakness
CWE-312
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.