Home

Description

PrinterShare Android application allows the capture of Gmail authentication tokens that can be reused to access a user's Gmail account without proper authorization.

PUBLISHED Reserved 2025-05-22 | Published 2025-05-23 | Updated 2025-05-23 | Assigner KoreLogic

Problem types

CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

CWE-313 Cleartext Storage in a File or on Disk

Product status

Default status
affected

12.15.01 (semver)
affected

Credits

This vulnerability was discovered by Felix Segoviano of KoreLogic, Inc. finder

References

korelogic.com/Resources/Advisories/KL-001-2025-003.txt exploit

korelogic.com/Resources/Advisories/KL-001-2025-003.txt third-party-advisory

cve.org (CVE-2025-5098)

nvd.nist.gov (CVE-2025-5098)

Download JSON