First published: Thu Dec 02 2021(Updated: )
Mahavitaran android application 7.50 and prior transmit sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header, MITM or browser history.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mahadiscom Mahavitaran | <=7.50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27414 is a vulnerability in the Mahavitaran android application 7.50 and prior versions that allows sensitive information to be transmitted in URL parameters.
The severity of CVE-2020-27414 is medium with a CVSS score of 5.9.
CVE-2020-27414 can lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header, MITM, or browser history.
To fix CVE-2020-27414, it is recommended to update the Mahavitaran android application to version 7.51 or later.
Yes, you can find additional information about CVE-2020-27414 at the following reference: [CVE-2020-27414 Reference](https://cvewalkthrough.com/cve-2020-27414-mahavitaran-android-application-insecure-communication-of-sensitive-dat/)