CVE-2022-41210

MEDIUM

SAP Customer Data Cloud Gigya mobile app for Android <7.4 - Info Di...

Title source: llm
STIX 2.1

Description

SAP Customer Data Cloud (Gigya mobile app for Android) - version 7.4, uses insecure random number generator program which makes it easy for the attacker to predict future random numbers. This can lead to information disclosure and modification of certain user settings.

Scores

CVSS v3 5.2
EPSS 0.0008
EPSS Percentile 23.9%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-338
Status published
Products (1)
sap/customer_data_cloud 7.4
Published Oct 11, 2022
Tracked Since Feb 18, 2026