Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-38117
HistoryOct 24, 2022 - 2:15 p.m.

Hardcoded credentials

2022-10-2414:15:00
PRIOn knowledge base
www.prio-n.com
3
hardcoded credentials
aes key
physical attack
android root privilege
user data tampering

6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

29.9%

Juiker app hard-coded its AES key in the source code. A physical attacker, after getting the Android root privilege, can use the AES key to decrypt users’ ciphertext and tamper with it.

CPENameOperatorVersion
juikereq4.6.0311.1

6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

29.9%

Related for PRION:CVE-2022-38117