CVE-2021-38696

SoftVibe SARABAN for INFOMA 1.1 has Incorrect Access Control vulnerability, that allows attackers to access signature files on the application without any authentication.

Summary:

SoftVibe SARABAN for INFOMA 1.1 has Incorrect Access Control vulnerability, that allows attackers to access signature files on the application without any authentication.

Reference Links(if available):

  • https://orangeo.tech/post/2021/12/24/First-CVEs.html
  • https://play.google.com/store/apps/details?id=th.co.softvibe.saraban&hl=en&gl=US
  • CVSS Score (if available)

    v2: / MEDIUM

    v3: /

    Links to Exploits(if available)