Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22081 | Unencrypted storage in the database in Two App Studio Journey v5.5.9 for iOS allows local attackers to extract sensitive data via direct access to the app’s filesystem. |
| Link | Providers |
|---|---|
| https://www.cirosec.de/sa/sa-2025-005 |
|
Mon, 21 Jul 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 21 Jul 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unencrypted storage in the database in Two App Studio Journey v5.5.9 for iOS allows local attackers to extract sensitive data via direct access to the app’s filesystem. | |
| Title | Insecure data storage vulnerability in Two App Studio Journey v5.5.9 for iOS | |
| Weaknesses | CWE-312 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: cirosec
Published:
Updated: 2025-07-21T12:28:22.467Z
Reserved: 2025-04-16T10:48:40.810Z
Link: CVE-2025-41458
Updated: 2025-07-21T12:28:19.611Z
Status : Deferred
Published: 2025-07-21T11:15:23.640
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-41458
No data.
OpenCVE Enrichment
No data.
EUVD