CVE-2019-11836

The Rediffmail (aka com.rediff.mail.and) application 2.2.6 for Android has cleartext mail content in file storage, persisting after a logout.
References
Link Resource
https://twitter.com/811Rishi/status/1122603147183017985 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:rediff:rediffmail:2.2.6:*:*:*:*:android:*:*

History

No history.

Information

Published : 2019-05-09 13:29

Updated : 2024-02-28 17:08


NVD link : CVE-2019-11836

Mitre link : CVE-2019-11836

CVE.ORG link : CVE-2019-11836


JSON object : View

Products Affected

rediff

  • rediffmail
CWE
CWE-311

Missing Encryption of Sensitive Data