VYPR

Diibear

by Taidii

CVEs (3)

  • CVE-2020-35455HigMar 17, 2021
    risk 0.51cvss 7.8epss 0.00

    The Taidii Diibear Android application 2.4.0 and all its derivatives allow attackers to obtain user credentials from Shared Preferences and the SQLite database because of insecure data storage.

  • CVE-2020-35454MedMar 17, 2021
    risk 0.44cvss 6.8epss 0.00

    The Taidii Diibear Android application 2.4.0 and all its derivatives allow attackers to obtain user credentials from an Android backup because of insecure application configuration.

  • CVE-2020-35456MedMar 17, 2021
    risk 0.36cvss 5.5epss 0.01

    The Taidii Diibear Android application 2.4.0 and all its derivatives allow attackers to view private chat messages and media files via logcat because of excessive logging.