Envoy Passport for Android and Envoy Passport for iPhone could allow a local attacker to obtain sensitive information, caused by the storing of unencrypted data in logs. An attacker could exploit this vulnerability to obtain two API keys, a token and other sensitive information.
References
Link Resource
https://exchange.xforce.ibmcloud.com/vulnerabilities/149659 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ibm

Published: 2019-03-04T00:00:00

Updated: 2019-03-19T19:47:41

Reserved: 2018-09-25T00:00:00


Link: CVE-2018-17499

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-03-21T16:00:26.093

Modified: 2019-10-09T23:36:41.520


Link: CVE-2018-17499

JSON object: View

cve-icon Redhat Information

No data.