VYPR
Vendor

Sbi

Products
2
CVEs
3
Across products
3
Status
Private

Products

2

Recent CVEs

3
  • CVE-2018-17108HigSep 16, 2018
    risk 0.57cvss 8.8epss 0.01

    The SBIbuddy (aka com.sbi.erupee) application 1.41 and 1.42 for Android might allow attackers to perform Account Takeover attacks by intercepting a security-question response during the initial configuration of the application.

  • CVE-2018-17404MedSep 23, 2018
    risk 0.35cvss 5.3epss 0.01

    The SBIbuddy (aka com.sbi.erupee) application 1.41 and 1.42 for Android might allow an attacker to sniff private information such as mobile number, PAN number (from a government-issued ID), and date of birth.

  • CVE-2014-5954Sep 18, 2014
    risk 0.00cvss epss 0.00

    The State Bank Anywhere (aka com.sbi.SBIFreedomPlus) application 2.0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.