unionpayintl CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

unionpayintl vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to unionpayintl, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2020-36285 Union Pay up to 3.3.12, for iOS mobile apps, contains a CWE-347: Improper Verification of Cryptographic Signature vulnerability, allows attackers to shop for free in merchants' websites and mobile apps, via a crafted authentication code (MAC) which is generated based on a secret key which is NULL. [email protected] 7.5 0.12% 2021-04-06 2024-11-21
CVE-2020-36284 Union Pay up to 3.4.93.4.9, for android, contains a CWE-347: Improper Verification of Cryptographic Signature vulnerability, allows attackers to shop for free in merchants' websites and mobile apps, via a crafted authentication code (MAC) which is generated based on a secret key which is NULL. [email protected] 7.5 0.07% 2021-04-06 2024-11-21
CVE-2020-23533 Union Pay up to 1.2.0, for web based versions contains a CWE-347: Improper Verification of Cryptographic Signature vulnerability, allows attackers to shop for free in merchants' websites and mobile apps, via a crafted authentication code (MAC) which is generated based on a secret key which is NULL. [email protected] 7.5 0.15% 2021-04-06 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence