Record summary

CVE-2018-11242 has a selected CVSS score of 6.5 (medium); EIP currently links 1 catalogued exploit.

Description

An issue was discovered in the MakeMyTrip application 7.2.4 for Android. The databases (locally stored) are not encrypted and have cleartext that might lead to sensitive information disclosure, as demonstrated by data/com.makemytrip/databases and data/com.makemytrip/Cache SQLite database files.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBMakeMyTrip 7.2.4 - Information DisclosureExploitDB exploitby Divya JainNot analyzed1 file
ExploitDB

PoC details

References

3