cve/2017/CVE-2017-13104.md

18 lines
741 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2017-13104](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-13104)
![](https://img.shields.io/static/v1?label=Product&message=UberEATS%3A%20Uber%20for%20Food%20Delivery&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=1.108.100011.108.10001%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-798&color=brighgreen)
### Description
Uber Technologies, Inc. UberEATS: Uber for Food Delivery, 1.108.10001, 2017-11-02, iOS application uses a hard-coded key for encryption. Data stored using this key can be decrypted by anyone able to access this key.
### POC
#### Reference
- https://www.kb.cert.org/vuls/id/787952
#### Github
No PoCs found on GitHub currently.