gist.github.com
https://gist.github.com/NinjaXshell/ba0aeee4b77b4bdea76d0c0c095d53b1 CVE-2018-11242
MEDIUM
MakeMyTrip 7.2.4 - Information Disclosure
Record summary
CVE-2018-11242 has a selected CVSS score of 6.5 (medium); EIP currently links 1 catalogued exploit.
Description
An issue was discovered in the MakeMyTrip application 7.2.4 for Android. The databases (locally stored) are not encrypted and have cleartext that might lead to sensitive information disclosure, as demonstrated by data/com.makemytrip/databases and data/com.makemytrip/Cache SQLite database files.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBMakeMyTrip 7.2.4 - Information DisclosureExploitDB exploitby Divya JainNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-11242 44690exploit
https://www.exploit-db.com/exploits/44690