PT-2018-11767 · Anda · Anda App

Gustavo Silva

·

Published

2018-10-24

·

Updated

2019-01-09

·

CVE-2018-13342

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Anda app (affected versions not specified)
Description The issue concerns the server API in the Anda app, which relies on hardcoded credentials.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-13342

Affected Products

Anda App