Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In the "NQ Contacts Backup & Restore" application 1.1 for Android, no HTTPS is used for transmitting login and synced user data. When logging in, the username is transmitted in cleartext along with an SHA-1 hash of the password. The attacker can either crack this hash or use it for further attacks where only the hash value is required.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NQ Contacts Backup&Restore application for Android 安全漏洞
Vulnerability Description
NQ Contacts Backup&Restore application for Android是一套基于Android平台的资料备份和恢复软件。 基于Android平台的NQ Contacts Backup&Restore应用程序1.1版本中存在安全漏洞,该漏洞源于在用户登录时,程序将明文的形式的用户名连同密码的SHA-1散列一起传递。攻击者可利用该漏洞破解散列。
CVSS Information
N/A
Vulnerability Type
N/A