Security Advisory

CVE-2017-9821

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-08-24 21:00:00
Last updated 2024-08-05 17:18:01
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The National Payments Corporation of India BHIM application 1.3 for Android relies on three hardcoded strings (AK-NPCIMB, IM-NPCIBM, and VK-NPCIBM) for SMS validation, which makes it easier for attackers to bypass authentication.