ZeroHour

CVE-2019-17398

PoC
CVSS 3.1
9.8 critical
EPSS
1%p69
Published
()
Modified
Description

In the Dark Horse Comics application 1.3.21 for Android, token information (equivalent to the username and password) is stored in the log during authentication, and may be available to attackers via logcat.

Vendors
darkhorse
Products
dark horse comics
Weakness
CWE-532
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.