CVE-2020-35456

MEDIUM

Taidii Diibear 2.4.0 - Sensitive Information Exposure via Logcat

Title source: llm
STIX 2.1

Description

The Taidii Diibear Android application 2.4.0 and all its derivatives allow attackers to view private chat messages and media files via logcat because of excessive logging.

References (2)

Core 2

Scores

CVSS v3 5.5
EPSS 0.0054
EPSS Percentile 41.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Details

CWE
CWE-319
Status published
Products (1)
taidii/diibear 2.4.0
Published Mar 17, 2021
Tracked Since Feb 18, 2026