Cleartext storage of sensitive information in the DuoxMe application for Android, in versions prior to 4.3.4, allows an attacker with local access to the device to retrieve the credentials stored by the application and impersonate the user account.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 16 Sep 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cleartext storage of sensitive information in the DuoxMe application for Android, in versions prior to 4.3.4, allows an attacker with local access to the device to retrieve the credentials stored by the application and impersonate the user account. | |
| Title | Cleartext Storage of Sensitive Information Vulnerability | |
| Weaknesses | CWE-312 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: FERMAX
Published:
Updated: 2026-09-16T09:12:29.119Z
Reserved: 2026-09-07T12:41:14.377Z
Link: CVE-2026-86443
No data.
Status : Received
Published: 2026-09-16T10:16:54.707
Modified: 2026-09-16T10:16:54.707
Link: CVE-2026-86443
No data.
OpenCVE Enrichment
No data.
Weaknesses