CVE-2017-20200
Severity CVSS v4.0:
MEDIUM
Type:
CWE-310
Cryptographic Issues
Publication date:
23/09/2025
Last modified:
24/09/2025
Description
A vulnerability has been found in Coinomi up to 1.7.6. This issue affects some unknown processing. Such manipulation leads to cleartext transmission of sensitive information. The attack can be launched remotely. This attack is characterized by high complexity. The exploitability is assessed as difficult. The exploit has been disclosed to the public and may be used. The vendor replied with: "(...) there isn't any security implication associated with your findings."
Impact
Base Score 4.0
6.30
Severity 4.0
MEDIUM
Base Score 3.x
3.70
Severity 3.x
LOW
Base Score 2.0
2.60
Severity 2.0
LOW
References to Advisories, Solutions, and Tools
- https://vuldb.com/?ctiid_325143=
- https://vuldb.com/?id_325143=
- https://vuldb.com/?submit_653875=
- https://web.archive.org/web/20171013065745/https://github.com/Coinomi/coinomi-android/issues/213
- https://web.archive.org/web/20171013065745/https://github.com/Coinomi/coinomi-android/issues/213#issuecomment-332371549
- https://www.reddit.com/r/Bitcoin/comments/72yvnj/so_coinomis_official_response_on_the/
- https://www.reddit.com/r/CryptoCurrency/comments/72osq7/security_warning_coinomi_wallet_transmits_all/dnkhpob/