This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Ohmibod First view 2017-12-01
Product Ohmibod Remote Last view 2017-12-01
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:ohmibod:ohmibod_remote:*:*:*:*:*:iphone_os:*:* 1
cpe:2.3:a:ohmibod:ohmibod_remote:*:*:*:*:*:android:*:* 1

Related : CVE

  Date Alert Description
9.1 2017-12-01 CVE-2017-14487

The OhMiBod Remote app for Android and iOS allows remote attackers to impersonate users by sniffing network traffic for search responses from the OhMiBod API server and then editing the username, user_id, and token fields in data/data/com.ohmibod.remote2/shared_prefs/OMB.xml.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-290 Authentication Bypass by Spoofing