Sensitive Information Exposure in Unisys Cargo Mobile Application
CVE-2021-43388
7.5HIGH
What is CVE-2021-43388?
The Unisys Cargo Mobile Application prior to version 1.2.29 contains a vulnerability that allows sensitive information to be stored in cleartext, potentially exposing it during backup operations. This security risk arises from the misconfiguration of the application's allowBackup setting in the manifest file, which should be set to False to prevent unauthorized access to sensitive data. Users of the application are advised to upgrade to version 1.2.29 or later to mitigate this risk.
