CVE-2022-39043 LOW

CVE-2022-39043: Juiker app - Information Leakage

Vendor Juiker
Product Juiker app
Weakness CWE-200 · Info exposure
Published March 27, 2023
Last update February 19, 2025

CVSS base score

2.4/10
Attack vector Physical
Attack complexity Low
Privileges required None
User interaction None
Confidentiality Low
Integrity None

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

What the vulnerability does

01Description

Juiker app stores debug logs which contains sensitive information to mobile external storage. An unauthenticated physical attacker can access these files to acquire partial user information such as personal contacts.

Key dates

02Disclosure timeline

March 27, 2023 CVE published
February 19, 2025 Record updated