An issue was discovered in UTI Mutual fund Android application 5.4.18 and prior, allows attackers to brute force enumeration of usernames determined by the error message returned after invalid credentials are attempted.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T17:02:08.104Z

Reserved: 2020-12-14T00:00:00

Link: CVE-2020-35398

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-12-23T22:15:07.333

Modified: 2024-11-21T05:27:15.880

Link: CVE-2020-35398

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.