Metrics
Affected Vendors & Products
Tue, 08 Apr 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 08 Apr 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Consumer
Consumer comanda Mobile |
|
CPEs | cpe:2.3:a:consumer:comanda_mobile:*:*:*:*:*:*:*:* | |
Vendors & Products |
Consumer
Consumer comanda Mobile |
Mon, 07 Apr 2025 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as problematic has been found in Consumer Comanda Mobile up to 14.9.3.2/15.0.0.8. This affects an unknown part of the component Restaurant Order Handler. The manipulation of the argument Login/Password leads to cleartext transmission of sensitive information. The attack can only be initiated within the local network. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. | |
Title | Consumer Comanda Mobile Restaurant Order cleartext transmission | |
Weaknesses | CWE-310 CWE-319 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-07T01:00:14.297Z
Updated: 2025-04-07T13:53:20.715Z
Reserved: 2025-04-06T12:23:03.859Z
Link: CVE-2025-3329

Updated: 2025-04-07T13:53:12.236Z

Status : Analyzed
Published: 2025-04-07T01:15:43.157
Modified: 2025-04-08T18:55:02.833
Link: CVE-2025-3329

No data.