Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
UAB Paytend App com.passport.cash AndroidManifest.xml improper export of android application components
Vulnerability Description
A weakness has been identified in UAB Paytend App up to 2.1.9 on Android. This impacts an unknown function of the file AndroidManifest.xml of the component com.passport.cash. Executing manipulation can lead to improper export of android application components. The attack needs to be launched locally. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
CWE-926
Vulnerability Title
UAB Paytend App 安全漏洞
Vulnerability Description
UAB Paytend App是UAB Paytend公司的一款银行移动应用程序。 UAB Paytend App 2.1.9及之前版本存在安全漏洞,该漏洞源于文件AndroidManifest.xml中组件导出不当,可能导致本地攻击。
CVSS Information
N/A
Vulnerability Type
N/A