Vulnerabilities (CVE)

Filtered by vendor Aremis Subscribe
Filtered by product Aremis 4 Nomads
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-34908 1 Aremis 1 Aremis 4 Nomads 2023-08-08 N/A 7.5 HIGH
An issue was discovered in the A4N (Aremis 4 Nomad) application 1.5.0 for Android. It possesses an authentication mechanism; however, some features do not require any token or cookie in a request. Therefore, an attacker may send a simple HTTP request to the right endpoint, and obtain authorization to retrieve application data.