πŸ” CVE Alert

CVE-2026-86443

UNKNOWN 0.0

Cleartext Storage of Sensitive Information Vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Cleartext storage of sensitive information in the DuoxMe application for Android, in versions prior to 4.3.4, allows an attacker with local access to the device to retrieve the credentials stored by the application and impersonate the user account.

CWE CWE-312
Vendor fermax electronica s.a.u.
Product duoxme
Published Sep 16, 2026
Stay Ahead of the Next One

Get instant alerts for fermax electronica s.a.u. duoxme

Be the first to know when new unknown vulnerabilities affecting fermax electronica s.a.u. duoxme are published β€” delivered to Slack, Telegram or Discord.

Get Free Alerts β†’ Free Β· No credit card Β· 60 sec setup

Affected Versions

Fermax Electronica S.A.U. / DuoxMe
0 < 4.3.4

References

NVD β†— CVE.org β†— EPSS Data β†—
fermax.com: https://fermax.com/security-advisories nvd.nist.gov: https://nvd.nist.gov/vuln/detail/CVE-2025-2909

Credits

Pedro J. NΓΊΓ±ez-Cacho Fuentes (Tunelko) INCIBE-CERT