CVE-2023-37512: HCL Traveler Companion is vulnerable to revealing sensitive information via the task switcher
Published Aug 11, 2023
·Updated
When the app is put to the background and the user goes to the task switcher of iOS, the app snapshot is not blurred which may reveal sensitive information.
Affected Software
1 affected component
hcltech Traveler Companion Iphone Os<12.0.6
Event History
Aug 11, 2023
CVE Published
via MITRE·12:34 AM
Data Sourced
via MITRE·12:34 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-37512?
CVE-2023-37512 is a vulnerability that allows the app snapshot on iOS to be viewed without blurring when the app is put to the background.
2
What is the severity of CVE-2023-37512?
The severity of CVE-2023-37512 is medium with a CVSS score of 5.5.
3
Which software is affected by CVE-2023-37512?
The Hcltech Traveler Companion app version up to 12.0.6 on iPhone devices running iOS is affected by CVE-2023-37512.
4
How can I fix CVE-2023-37512?
To fix CVE-2023-37512, update the Hcltech Traveler Companion app to a version higher than 12.0.6.
5
Where can I find more information about CVE-2023-37512?
You can find more information about CVE-2023-37512 in the following link: [link](https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106691).