Description

An issue was discovered in AXIS BANK LIMITED Axis Mobile App 9.9 that allows attackers to obtain sensitive information without a UPI PIN, such as account information, balances, transaction history, and unspecified other information. NOTE: the Supplier's perspective is that this is an intended feature and "does not reveal much sensitive information."

INFO

Published Date :

2025-09-12T00:00:00.000Z

Last Modified :

2025-09-15T17:30:03.071Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-56467 vulnerability.

Vendors Products
Axis
  • Axis Mobile App
Google
  • Android

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact