Logic Vulnerability in Carlcare Mobile Application by Transsion
CVE-2025-1298
9.8CRITICAL
Summary
The Carlcare mobile application by Transsion contains a logic vulnerability that may allow attackers to exploit the application, leading to unauthorized access to user accounts. This flaw can compromise user data and threatens the overall security of users utilizing the app. Immediate attention to this vulnerability is imperative to secure accounts against potential takeover.
Affected Version(s)
com.transsion.carlcare 6.2.8.1
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved