Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Goisi Han

#18468of 53,635
14.6Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2021-11769
6.8
2021-03-17
Unknown · Taidii Diibear Android Application · CVE-2020-35454
Name of the Vulnerable Software and Affected Versions: Taidii Diibear Android application version 2.4.0 and its derivatives Description: The issue allows attackers to obtain user credentials from an Android backup due to insecure application configuration. Recommendations: For Taidii Diibear Android application version 2.4.0 and its derivatives, consider restricting access to the application's backup data to minimize the risk of exploitation until a secure configuration is implemented.
PT-2021-11770
7.8
2021-03-17
Unknown · Taidii Diibear Android Application · CVE-2020-35455
Name of the Vulnerable Software and Affected Versions: Taidii Diibear Android application version 2.4.0 and its derivatives Description: The issue allows attackers to obtain user credentials from `Shared Preferences` and the `SQLite database` due to insecure data storage. Recommendations: For Taidii Diibear Android application version 2.4.0 and its derivatives, consider implementing secure data storage practices to protect user credentials. As a temporary workaround, restrict access to sensitive data stored in `Shared Preferences` and the `SQLite database` to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.