CVE-2026-86443
Cleartext Storage of Sensitive Information Vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Cleartext storage of sensitive information in the DuoxMe application for Android, in versions prior to 4.3.4, allows an attacker with local access to the device to retrieve the credentials stored by the application and impersonate the user account.
| CWE | CWE-312 |
| Vendor | fermax electronica s.a.u. |
| Product | duoxme |
| Published | Sep 16, 2026 |
Stay Ahead of the Next One
Get instant alerts for fermax electronica s.a.u. duoxme
Be the first to know when new unknown vulnerabilities affecting fermax electronica s.a.u. duoxme are published β delivered to Slack, Telegram or Discord.
Get Free Alerts β
Free Β· No credit card Β· 60 sec setup
Affected Versions
Fermax Electronica S.A.U. / DuoxMe
0 < 4.3.4
References
Credits
Pedro J. NΓΊΓ±ez-Cacho Fuentes (Tunelko) INCIBE-CERT