CVE-2023-22362
Severity CVSS v4.0:
Pending analysis
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
13/02/2023
Last modified:
21/03/2025
Description
SUSHIRO App for Android outputs sensitive information to the log file, which may result in an attacker obtaining a credential information from the log file. Affected products/versions are as follows: SUSHIRO Ver.4.0.31, Thailand SUSHIRO Ver.1.0.0, Hong Kong SUSHIRO Ver.3.0.2, Singapore SUSHIRO Ver.2.0.0, and Taiwan SUSHIRO Ver.2.0.1
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:akindo-sushiro:hong_kong_sushiro:3.0.3:*:*:*:*:android:*:* | ||
| cpe:2.3:a:akindo-sushiro:singapore_sushiro:2.0.3:*:*:*:*:android:*:* | ||
| cpe:2.3:a:akindo-sushiro:sushiro:4.0.31:*:*:*:*:android:*:* | ||
| cpe:2.3:a:akindo-sushiro:taiwan_sushiro:2.0.3:*:*:*:*:android:*:* | ||
| cpe:2.3:a:akindo-sushiro:thailand_sushiro:2.0.3:*:*:*:*:android:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://jvn.jp/en/jp/JVN84642320/
- https://play.google.com/store/apps/details?id=hk.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=jp.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=sg.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=th.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=tw.co.akindo_sushiro.sushiroapp
- https://jvn.jp/en/jp/JVN84642320/
- https://play.google.com/store/apps/details?id=hk.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=jp.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=sg.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=th.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=tw.co.akindo_sushiro.sushiroapp



