VULNERABILITY INTELLIGENCE

CVE-2012-5696

CVSS score5 MEDIUM
EPSS probability1.26%
CISA KEVNot currently listed
Published2014-10-20
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:P/I:N/A:N

Description

Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 does not properly restrict access to frameworkgui/config, which allows remote attackers to obtain the plaintext database password via a direct request.

Primary references