2.1
CVSSv2

CVE-2013-6986

Published: 12/12/2013 Updated: 20/12/2013
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The ZippyYum Subway CA Kiosk app 3.4 for iOS uses cleartext storage in SQLite cache databases, which allows malicious users to obtain sensitive information by reading data elements, as demonstrated by password elements.

Vulnerable Product Search on Vulmon Subscribe to Product

zippyyum subway ordering for california 3.4

Exploits

Subway Ordering for California (ZippyYum) version 34 suffers from an insecure data storage vulnerability The application stores sensitive data insecurely to cache files located within /Caches/comZippyYumSubwayOC/ directory on the device ...