Cleartext Storage of Sensitive Information (CWE-312) in the Command Centre Mobile Client on Android and iOS could allow an attacker with access to a logged-in Operator's mobile device to extract the session token and exploit access for a limited duration.
This issue affects Command Centre Mobile Client versions prior to 9.40.123.
This issue affects Command Centre Mobile Client versions prior to 9.40.123.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 03 Mar 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cleartext Storage of Sensitive Information (CWE-312) in the Command Centre Mobile Client on Android and iOS could allow an attacker with access to a logged-in Operator's mobile device to extract the session token and exploit access for a limited duration. This issue affects Command Centre Mobile Client versions prior to 9.40.123. | |
| Weaknesses | CWE-312 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Gallagher
Published:
Updated: 2026-03-03T02:39:30.623Z
Reserved: 2025-06-17T02:18:59.232Z
Link: CVE-2025-47147
No data.
Status : Received
Published: 2026-03-03T03:15:54.190
Modified: 2026-03-03T03:15:54.190
Link: CVE-2025-47147
No data.
OpenCVE Enrichment
No data.
Weaknesses