Vulnerabilities > SAP > Customer Data Cloud > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-10-11 CVE-2022-41209 Inadequate Encryption Strength vulnerability in SAP Customer Data Cloud 7.4
SAP Customer Data Cloud (Gigya mobile app for Android) - version 7.4, uses encryption method which lacks proper diffusion and does not hide the patterns well.
low complexity
sap CWE-326
5.2
2022-10-11 CVE-2022-41210 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) vulnerability in SAP Customer Data Cloud 7.4
SAP Customer Data Cloud (Gigya mobile app for Android) - version 7.4, uses insecure random number generator program which makes it easy for the attacker to predict future random numbers.
low complexity
sap CWE-338
5.2