SUSHIRO App for Android outputs sensitive information to the log...
Vulnerability Description
SUSHIRO App for Android outputs sensitive information to the log file, which may result in an attacker obtaining a credential information from the log file. Affected products/versions are as follows: SUSHIRO Ver.4.0.31, Thailand SUSHIRO Ver.1.0.0, Hong Kong SUSHIRO Ver.3.0.2, Singapore SUSHIRO Ver.2.0.0, and Taiwan SUSHIRO Ver.2.0.1
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-22362
Credits & Attribution
No credits recorded in the NVD database.
References
- https://play.google.com/store/apps/details?id=jp.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=th.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=hk.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=sg.co.akindo_sushiro.sushiroapp
- https://play.google.com/store/apps/details?id=tw.co.akindo_sushiro.sushiroapp
- https://jvn.jp/en/jp/JVN84642320/
Affected Vendor
AKINDO SUSHIRO CO., LTD.
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.