Security Advisory
CVE-2021-32612
8.1
HIGH
Vulnerability Description
The VeryFitPro (com.veryfit2hr.second) application 3.2.8 for Android does all communication with the backend API over cleartext HTTP. This includes logins, registrations, and password change requests. This allows information theft and account takeover via network sniffing.
Published Date
June 16, 2021
Official Source
NIST NVD Advisory