EquityPandit 1.0 contains an insecure logging vulnerability that allows attackers to capture sensitive user credentials by accessing developer console logs via Android Debug Bridge. Attackers can use adb logcat to extract plaintext passwords logged during the forgot password function, exposing user account credentials.
References
Configurations
No configuration.
History
22 Mar 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-22 14:16
Updated : 2026-03-23 14:31
NVD link : CVE-2019-25605
Mitre link : CVE-2019-25605
CVE.ORG link : CVE-2019-25605
JSON object : View
Products Affected
No product.
CWE
CWE-612
Improper Authorization of Index Containing Sensitive Information
