CVE-2023-37513: HCL Traveler To Do is vulnerable to revealing sensitive information via the task switcher
Published Aug 11, 2023
·Updated
When the app is put to the background and the user goes to the task switcher of iOS, the app snapshot is not blurred which may reveal sensitive information.
Affected Software
1 affected component
hcltech Traveler To Do Iphone Os<12.0.6
Event History
Aug 11, 2023
CVE Published
via MITRE·12:25 AM
Data Sourced
via MITRE·12:25 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID for this issue is CVE-2023-37513.
2
What is the severity of CVE-2023-37513?
The severity of CVE-2023-37513 is medium.
3
What is the affected software version of CVE-2023-37513?
The affected software version of CVE-2023-37513 is Hcltech Traveler To Do version up to 12.0.6 on iPhone OS.
4
How does this vulnerability impact the user?
This vulnerability allows the app snapshot to not be blurred when the app is put to the background, potentially revealing sensitive information to anyone viewing the task switcher on iOS.
5
Is there a fix for CVE-2023-37513?
To fix CVE-2023-37513, it is recommended to update the Hcltech Traveler To Do app to a version higher than 12.0.6 on iPhone OS.