PT-2013-1734 · Tripadvisor · Tripadvisor

Publicado

2013-01-26

·

Atualizado

2013-02-02

·

CVE-2012-4917

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions TripAdvisor app version 6.6 for iOS
Description The issue allows remote attackers to obtain sensitive information by sniffing the network, as the app sends cleartext credentials.
Recommendations For version 6.6, consider disabling the use of the app until a patch is available that encrypts credentials, or restrict access to sensitive information to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-4917

Produtos afetados

Tripadvisor