CVE-2024-38480
Severity CVSS v4.0:
Pending analysis
Type:
CWE-798
Use of Hard-coded Credentials
Publication date:
01/07/2024
Last modified:
12/11/2024
Description
"Piccoma" App for Android and iOS versions prior to 6.20.0 uses a hard-coded API key for an external service, which may allow a local attacker to obtain the API key. Note that the users of the app are not directly affected by this vulnerability.
Impact
Base Score 3.x
4.00
Severity 3.x
MEDIUM



