CVE-2017-15581

CVE-2017-15581

In the "Diary with lock" (aka WriteDiary) application 4.72 for Android, neither HTTPS nor other encryption is used for transmitting data, despite the documentation that the product is intended for "a personal journal of … secrets and feelings," which allows remote attackers to obtain sensitive information by sniffing the network during LoginActivity or NoteActivity execution.

Source: CVE-2017-15581

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다