ZeroHour

CVE-2019-17396

CVSS 3.1
9.8 critical
EPSS
1%p67
Published
()
Modified
Description

In the PowerSchool Mobile application 1.1.8 for Android, the username and password are stored in the log during authentication, and may be available to attackers via logcat.

Vendors
powerschool
Products
powerschool mobile
Weakness
CWE-532
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.