An issue discovered in MEGAFEIS, BOFEI DBD+ Application for IOS & Android v1.4.4 allows authenticated attacker to gain access to sensitive account information
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://labs.withsecure.com/advisories/username-disclosure-vulnerability-in-dbd--application-used-by-me | third party advisory exploit |
https://github.com/WithSecureLabs/megafeis-palm/tree/main/CVE-2022-45634 | third party advisory exploit |