GHSA-2q7r-p8fq-p422LowCVSS 2.4
Smartphone application Tohoku Electric Power "Yorisou e Net" uses a hard-coded cryptographic key,...
🔗 CVE IDs covered (1)
📋 Description
Smartphone application Tohoku Electric Power "Yorisou e Net" uses a hard-coded cryptographic key, which may allow an attacker to retrieve a hard-coded cryptographic key from the affected product.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-75553
- https://apps.apple.com/jp/app/%E6%9D%B1%E5%8C%97%E9%9B%BB%E5%8A%9B-%E3%82%88%E3%82%8A%E3%81%9D%E3%81%86%EF%BD%85%E3%81%AD%E3%81%A3%E3%81%A8/id1420949327?l=en-US
- https://jvn.jp/en/jp/JVN93985674
- https://play.google.com/store/apps/details?id=jp.co.tohokuepco.enet&hl=ja
- https://github.com/advisories/GHSA-2q7r-p8fq-p422