QID 630771
QID 630771: For IOS Vulnerability CVE-2021-20748
Retty App for Android versions prior to 4.8.13 and Retty App for iOS versions prior to 4.11.14 uses a hard-coded API key for an external service. By exploiting this vulnerability, API key for an external service may be obtained by analyzing data in the app.
On successful exploitation, it could allow an attacker to execute code.
Solution
Upgrade to the latest packages which contain a patch. Refer to CVE-2021-20748 to address this issue and obtain more information.
Vendor References
- CVE-2021-20748 -
nvd.nist.gov/vuln/detail/CVE-2021-20748
CVEs related to QID 630771
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-20748 | iOS |
|