VYPR
Critical severity9.8NVD Advisory· Published Jul 22, 2019· Updated Jun 17, 2026

CVE-2019-13096

CVE-2019-13096

Description

TronLink Wallet 2.2.0 stores user wallet keystore in plaintext and places them in insecure storage. An attacker can read and reuse the user keystore of a valid user via /data/data/com.tronlink.wallet/shared_prefs/.xml to gain unauthorized access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • TronLink/Wallet2 versions
    cpe:2.3:a:tronlink:wallet:2.2.0:*:*:*:*:android:*:*+ 1 more
    • cpe:2.3:a:tronlink:wallet:2.2.0:*:*:*:*:android:*:*
    • (no CPE)range: =2.2.0
  • TronLink/Walletdescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.