The SBIbuddy (aka com.sbi.erupee) application 1.41 and 1.42 for Android might allow attackers to perform Account Takeover attacks by intercepting a security-question response during the initial configuration of the application.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sbi_buddy | Sbi | 1.41 (including) | 1.41 (including) |
Sbi_buddy | Sbi | 1.42 (including) | 1.42 (including) |