Information disclosure vulnerability in Android App 'IIJ SmartKey' versions prior to 2.1.4 allows an attacker to obtain a one-time password issued by the product under certain conditions.
https://play.google.com/store/apps/details?id=jp.ad.iij.smartkey2
https://jvn.jp/en/jp/JVN74534998/index.html
Source: Mitre, NVD
Published: 2022-10-24
Updated: 2025-05-07
Base Score: 7.8
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:N/A:N
Severity: High
Base Score: 7.5
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS: 0.00092