CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Android. Public exploit code or proof-of-concept references have been detected in its references.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
GitHub PoC Links
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2017-9821
Severity
CRITICAL
CVSS
9.8
EPSS
1.43%
Android
Original NVD Description
The National Payments Corporation of India BHIM application 1.3 for Android relies on three hardcoded strings (AK-NPCIMB, IM-NPCIBM, and VK-NPCIBM) for SMS validation, which makes it easier for attackers to bypass authentication.
Related CVEs
Other vulnerabilities affecting the same vendor(s)