Security Advisory

CVE-2019-14808

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-10-09 15:03:05
Last updated 2024-08-05 00:26:38
Assigner mitre
State PUBLISHED

Description

An issue was discovered in the RENPHO application 3.0.0 for iOS. It transmits JSON data unencrypted to a server without an integrity check, if a user changes personal data in his profile tab (e.g., exposure of his birthday) or logs into his account (i.e., exposure of credentials).