ZeroHour

Vulnerabilities

2 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2024-53359
An issue in Zalo v23.09.01 allows attackers to obtain sensitive user information via a crafted GET request.

An issue in Zalo v23.09.01 allows attackers to obtain sensitive user information via a crafted GET request.

NVD description · AI analysis pending
7.5<1% PoC
  • zalo zalo
CVE-2019-11384
The Zalora application 6.15.1 for Android stores confidential information insecurely on the system (i.e.

The Zalora application 6.15.1 for Android stores confidential information insecurely on the system (i.e. plain text), which allows a non-root user to find out the username/password of a valid user via /data/data/com.zalora.android/shared_prefs/login_data.xml.

NVD description · AI analysis pending
9.8<1% PoC
  • zalora zalora