Description

The mobile application is configured to allow clear text traffic to all domains and communicates with an API server over HTTP. As a result, an adversary located "upstream" can intercept the traffic, inspect its contents, and modify the requests in transit. TThis may result in a total compromise of the user's account if the attacker intercepts a request with active authentication tokens or cracks the MD5 hash sent on login.

INFO

Published Date :

2025-12-10T00:00:00.000Z

Last Modified :

2025-12-11T20:12:46.296Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-65827 vulnerability.

Vendors Products
Meatmeet
  • Meatmeet
  • Meatmeet Pro

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact