CVE-2022-39043

LOW

Juiker - Sensitive Information Exposure via Debug Logs in External Storage

Title source: llm
STIX 2.1

Description

Juiker app stores debug logs which contains sensitive information to mobile external storage. An unauthenticated physical attacker can access these files to acquire partial user information such as personal contacts.

References (1)

Core 1
Core References

Scores

CVSS v3 2.4
EPSS 0.0025
EPSS Percentile 16.5%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-532 CWE-200 CWE-922
Status published
Products (1)
juiker/juiker 4.6.0607.1
Published Mar 27, 2023
Tracked Since Feb 18, 2026