The Citrix GoToMeeting application 5.0.799.1238 for Android logs HTTP requests containing sensitive information, which allows attackers to obtain user IDs, meeting details, and authentication tokens via an application that reads the system log file.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/65123 | vdb entry exploit |
http://www.securityfocus.com/archive/1/530879/100/0/threaded | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/90695 | vdb entry |
http://osvdb.org/102559 | vdb entry |