PT-2022-12983 · Unknown · Jimoty App For Android

Masashi Yamane

·

Published

2022-01-17

·

Updated

2022-01-24

·

CVE-2022-0131

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Jimoty App for Android versions prior to 3.7.42
Description The issue concerns the use of a hard-coded API key for an external service in the app. This could allow the API key to be obtained by analyzing the app's data, potentially leading to unauthorized access.
Recommendations For Jimoty App for Android versions prior to 3.7.42, update to version 3.7.42 or later to resolve the issue.

Fix

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-0131

Affected Products

Jimoty App For Android