cvedb.io
CVE-2022-41209
MEDIUM · CVSS 5.2
EPSS exploitation probability: 0%
Published 2022-10-11T21:15:26.523 · Last modified 2026-06-17T05:02:47.327

Summary

SAP Customer Data Cloud (Gigya mobile app for Android) - version 7.4, uses encryption method which lacks proper diffusion and does not hide the patterns well. This can lead to information disclosure. In certain scenarios, application might also be susceptible to replay attacks.

Affected products

sap — customer_data_cloud

Does this affect you?

Add your gear to cvedb and we'll alert you only when sap ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.