An issue in KukuFM Android v1.12.7 (11207) allows attackers to access sensitive cleartext data via the android:allowBackup="true" in the ANdroidManifest.xml
                
            References
                    | Link | Resource | 
|---|---|
| https://pastebin.com/0cb0KsGS | Exploit | 
| https://pastebin.com/0cb0KsGS | Exploit | 
Configurations
                    History
                    01 Apr 2025, 20:25
| Type | Values Removed | Values Added | 
|---|---|---|
| CPE | cpe:2.3:a:kukufm:kukufm:1.12.7:*:*:*:*:android:*:* | |
| First Time | 
        
        Kukufm kukufm
         Kukufm  | 
|
| References | () https://pastebin.com/0cb0KsGS - Exploit | 
24 Mar 2025, 16:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-312 | |
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 7.5  | 
| References | () https://pastebin.com/0cb0KsGS - | 
24 Mar 2025, 15:15
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
        
        
  | 
|
| References | 
        
        
  | 
    
20 Mar 2025, 21:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-03-20 21:15
Updated : 2025-04-01 20:25
NVD link : CVE-2025-25758
Mitre link : CVE-2025-25758
CVE.ORG link : CVE-2025-25758
JSON object : View
Products Affected
                kukufm
- kukufm
 
CWE
                
                    
                        
                        CWE-312
                        
            Cleartext Storage of Sensitive Information
