CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.1. It affects Android.
CVE
CVE-2021-32612
Severity
HIGH
CVSS
8.1
EPSS
1.09%
Android
Original NVD Description
The VeryFitPro (com.veryfit2hr.second) application 3.2.8 for Android does all communication with the backend API over cleartext HTTP. This includes logins, registrations, and password change requests. This allows information theft and account takeover via network sniffing.