CVE-2020-5667

Publication date

2020-11-06 02:06:32

Family

jpcert

State

PUBLISHED

Description

Studyplus App for Android v6.3.7 and earlier and Studyplus App for iOS v8.29.0 and earlier use a hard-coded API key for an external service. By exploiting this vulnerability, API key for an external service may be obtained by analyzing data in the app.