Insertion of sensitive information into log file issue exists in "region PAY" App for Android prior to 1.5.28. If exploited, sensitive user information may be exposed to an attacker who has access to the application logs.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://jvn.jp/en/jp/JVN07825095/ |
|
History
Tue, 22 Jul 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 22 Jul 2025 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insertion of sensitive information into log file issue exists in "region PAY" App for Android prior to 1.5.28. If exploited, sensitive user information may be exposed to an attacker who has access to the application logs. | |
| Weaknesses | CWE-532 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published: 2025-07-22T04:49:33.459Z
Updated: 2025-07-22T15:36:00.332Z
Reserved: 2025-07-15T01:02:40.018Z
Link: CVE-2025-52580
Updated: 2025-07-22T15:35:55.909Z
Status : Awaiting Analysis
Published: 2025-07-22T05:15:40.910
Modified: 2025-07-22T13:05:40.573
Link: CVE-2025-52580
No data.