Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Rico só vantagem pra investir App br.com.rico.mobile SegmentSettingsModule.java hard-coded key
Vulnerability Description
A vulnerability has been found in Rico só vantagem pra investir App up to 4.58.32.12421 on Android. This issue affects some unknown processing of the file br/com/rico/mobile/di/SegmentSettingsModule.java of the component br.com.rico.mobile. Such manipulation of the argument SEGMENT_WRITE_KEY leads to use of hard-coded cryptographic key . The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
使用硬编码的密码学密钥
Vulnerability Title
Rico só vantagem pra investir App 安全漏洞
Vulnerability Description
Rico só vantagem pra investir App是巴西Rico公司的一个数字投资应用程序。 Rico só vantagem pra investir App 4.58.32.12421及之前版本存在安全漏洞,该漏洞源于对参数SEGMENT_WRITE_KEY使用硬编码加密密钥。
CVSS Information
N/A
Vulnerability Type
N/A