[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2010-4213Date: (C)2010-11-08   (M)2023-12-22


The Bank of America application 2.12 for Android stores a security question's answer in cleartext, which might allow physically proximate attackers to obtain sensitive information by reading application data.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.3
Exploit Score: 8.6
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: PARTIAL
Integrity: NONE
Availability: NONE
  
Reference:
http://news.cnet.com/8301-27080_3-20021874-245.html
http://online.wsj.com/article/SB10001424052748703805704575594581203248658.html
http://viaforensics.com/appwatchdog/bank-of-america-android.html

CPE    1
cpe:/o:google:android
CWE    1
CWE-310

© SecPod Technologies