Vulnerabilities > CVE-2021-43512 - Insecure Storage of Sensitive Information vulnerability in Flightradar24 Flight Tracker

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
flightradar24
CWE-922

Summary

An issue was discovered in FlightRadar24 v8.9.0, v8.10.0, v8.10.2, v8.10.3, v8.10.4 for Android, allows attackers to cause unspecified consequences due to being able to decompile a local application and extract their API keys.

Common Weakness Enumeration (CWE)