VYPR
High severity7.5NVD Advisory· Published Oct 22, 2021· Updated Jun 17, 2026

CVE-2020-23038

CVE-2020-23038

Description

Swift File Transfer Mobile v1.1.2 and below was discovered to contain an information disclosure vulnerability in the path parameter. This vulnerability is exploited via an error caused by including non-existent path environment variables.

Affected products

5
  • cpe:2.3:a:kumilabs:swift_file_transfer:*:*:*:*:*:android:*:*+ 2 more
    • cpe:2.3:a:kumilabs:swift_file_transfer:*:*:*:*:*:android:*:*range: <=1.1.2
    • cpe:2.3:a:kumilabs:swift_file_transfer:*:*:*:*:*:blackberry:*:*range: <=1.0.19
    • cpe:2.3:a:kumilabs:swift_file_transfer:*:*:*:*:*:iphone_os:*:*range: <=1.1.2
  • Swift File Transfer Mobile/Swift File Transfer Mobiledescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.