Lucene search

K
cveMitreCVE-2015-1598
HistoryMar 07, 2015 - 2:59 a.m.

CVE-2015-1598

2015-03-0702:59:07
CWE-200
mitre
web.nvd.nist.gov
27
siemens
spcanywhere
android
password storage
security vulnerability
nvd
cve-2015-1598

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

12.6%

The Siemens SPCanywhere application for Android does not properly store application passwords, which allows physically proximate attackers to obtain sensitive information by examining the device filesystem.

Affected configurations

Nvd
Node
siemensspcanywhereRange1.4.1android
VendorProductVersionCPE
siemensspcanywhere*cpe:2.3:a:siemens:spcanywhere:*:*:*:*:android:*:*:*

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

12.6%

Related for CVE-2015-1598