2.1
CVE-2013-6986
- EPSS 0.56%
- Veröffentlicht 12.12.2013 17:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The ZippyYum Subway CA Kiosk app 3.4 for iOS uses cleartext storage in SQLite cache databases, which allows attackers to obtain sensitive information by reading data elements, as demonstrated by password elements.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zippyyum ≫ Subway Ordering For California Version3.4 Update- Edition- SwEdition- SwPlatformiphone_os
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.56% | 0.422 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
http://archives.neohapsis.com/archives/bugtraq/2013-12/0040.html
http://osvdb.org/100745
http://packetstormsecurity.com/files/124330/ZippyYum-3.4-Insecure-Data-Storage.html
http://seclists.org/fulldisclosure/2013/Dec/39