Mahadiscom
Mahadiscom Mahavitaran: vulnerabilidades y CVE
Mahadiscom Mahavitaran tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2020-27416 | Crítica (9.8) | 1.6% | — | 8 dic 2021 | Mahavitaran android application 7.50 and prior are affected by account takeover due to improper OTP validation, allows remote attackers to control a users account. |
| CVE-2021-41716 | Crítica (9.8) | 1.4% | — | 7 dic 2021 | Maharashtra State Electricity Board Mahavitara Android Application 8.20 and prior is vulnerable to remote account takeover due to OTP fixation vulnerability in password rest function |
| CVE-2020-27413 | Media (4.2) | 0.32% | — | 7 dic 2021 | An issue was discovered in Mahavitaran android application 7.50 and below, allows local attackers to read cleartext username and password while the user is logged into the application. |
| CVE-2020-27414 | Media (5.9) | 1.0% | — | 2 dic 2021 | Mahavitaran android application 7.50 and prior transmit sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header,… |