CVE detail
CVE-2019-14808 — CVE-2019-14808
Published 2019-10-09 · Modified 2026-06-17 · Vendor renpho · Product renpho · Source nvd
MEDIUM
severity
CVSS-derived band
0.0134
EPSS probability
exploitation probability, 30d
69.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
An issue was discovered in the RENPHO application 3.0.0 for iOS. It transmits JSON data unencrypted to a server without an integrity check, if a user changes personal data in his profile tab (e.g., exposure of his birthday) or logs into his account (i.e., exposure of credentials).
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References