CVE-2019-6024

Severity CVSS v4.0:
Pending analysis
Type:
CWE-522 Insufficiently Protected Credentials
Publication date:
26/12/2019
Last modified:
02/01/2020

Description

Rakuma App for Android version 7.15.0 and earlier, and for iOS version 7.16.4 and earlier allows an attacker to bypass authentication and obtain the user's authentication information via a malicious application created by the third party.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rakuten:rakuma:*:*:*:*:*:android:*:* 7.15.0 (including)
cpe:2.3:a:rakuten:rakuma:*:*:*:*:*:iphone_os:*:* 7.16.4 (including)