Published on May 7th, 2019 📆 | 2769 Views ⚑
0Ascensia Contour NEXT ONE App on Android Reverse Engineering information disclosure
CVSS Meta Temp Score | Current Exploit Price (≈) |
---|---|
3.4 | $0-$5k |
A vulnerability has been found in Ascensia Contour NEXT ONE App on Android and classified as problematic. Affected by this vulnerability is a functionality. The manipulation with an unknown input leads to a information disclosure vulnerability (Reverse Engineering). The CWE definition for the vulnerability is CWE-200. As an impact it is known to affect confidentiality.
The weakness was shared 05/06/2019. This vulnerability is known as CVE-2018-18977 since 11/05/2018. The technical details are unknown and an exploit is not publicly available.
Upgrading eliminates this vulnerability. A possible mitigation has been published even before and not after the disclosure of the vulnerability.
The issues 134417, 134418, 134420 and 134421 are related to this entry.
Vendor
Name
VulDB Meta Base Score: 3.5
VulDB Meta Temp Score: 3.4
VulDB Base Score: ≈3.5
VulDB Temp Score: ≈3.4
VulDB Vector: ?
VulDB Reliability: ?
VulDB Base Score: ?
VulDB Temp Score: ?
VulDB Reliability: ?
Class: Information disclosure / Reverse Engineering (CWE-200)
Local: Yes
Remote: No
Availability: ?
Status: Not defined
Price Prediction: ?
Current Price Estimation: ?
0-Day | unlock | unlock | unlock | unlock |
---|---|---|---|---|
Today | unlock | unlock | unlock | unlock |
Threat Intelligence
Threat: ?
Adversaries: ?
Geopolitics: ?
Economy: ?
Predictions: ?
Remediation: ?Recommended: Upgrade
Status: ?
0-Day Time: ?11/05/2018 CVE assigned
01/15/2019 Countermeasure disclosed
05/06/2019 Advisory disclosed
05/07/2019 VulDB entry created
05/07/2019 VulDB last updateCVE: CVE-2018-18977 (?)
scip Labs: https://www.scip.ch/en/?labs.20130704
See also: ?Created: 05/07/2019 07:15 AM
Complete: ?
Download it now for free!
https://vuldb.com/?id.134419
Gloss