CVE-2022-39043

Juiker app stores debug logs which contains sensitive information to mobile external storage. An unauthenticated physical attacker can access these files to acquire partial user information such as personal contacts.
Configurations

Configuration 1 (hide)

cpe:2.3:a:juiker:juiker:4.6.0607.1:*:*:*:*:android:*:*

History

21 Nov 2024, 07:17

Type Values Removed Values Added
References () https://www.twcert.org.tw/tw/cp-132-6922-4a37a-1.html - Third Party Advisory () https://www.twcert.org.tw/tw/cp-132-6922-4a37a-1.html - Third Party Advisory

21 Jul 2023, 20:33

Type Values Removed Values Added
CWE NVD-CWE-noinfo CWE-532
CWE-922

Information

Published : 2023-03-27 04:15

Updated : 2024-11-21 07:17


NVD link : CVE-2022-39043

Mitre link : CVE-2022-39043

CVE.ORG link : CVE-2022-39043


JSON object : View

Products Affected

juiker

  • juiker
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-532

Insertion of Sensitive Information into Log File

CWE-922

Insecure Storage of Sensitive Information