AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-8989

MEDIUM · CVSS 5.3 EPSS 1.03%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-02-13 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.3. It affects Android. It may be remotely exploitable.

CVE
CVE-2020-8989
Severity
MEDIUM
CVSS
5.3
EPSS
1.03%
Android

Original NVD Description

In the Voatz application 2020-01-01 for Android, the amount of data transmitted during a single voter's vote depends on the different lengths of the metadata across the available voting choices, which makes it easier for remote attackers to discover this voter's choice by sniffing the network. For example, a small amount of sniffed data may indicate that a vote was cast for the candidate with the least metadata. An active man-in-the-middle attacker can leverage this behavior to disrupt voters' abilities to vote for a candidate opposed by the attacker.

Related CVEs

Other vulnerabilities affecting the same vendor(s)