CVE Published: 06/11/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: jpcert |
Vendor: Studyplus Inc. |
Product: Studyplus App Status : PUBLISHED
CVE-2020-5667 Description
Studyplus App for Android v6.3.7 and earlier and Studyplus App for iOS v8.29.0 and earlier use a hard-coded API key for an external service. By exploiting this vulnerability, API key for an external service may be obtained by analyzing data in the app.