Skip to main content

Vendor archive

npci CVEs

Beta · best-effort

4 CVEs tagged to vendor npci3 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2017-9821

Published Aug 24, 2018

The National Payments Corporation of India BHIM application 1.3 for Android relies on three hardcoded strings (AK-NPCIMB, IM-NPCIBM, and VK-NPCIBM) for SMS validation, which makes…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-9820

Published Aug 24, 2018

The National Payments Corporation of India BHIM application 1.3 for Android uses a custom keypad for which the input element is available to the Accessibility service, which makes…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-9819

Published Aug 24, 2018

The National Payments Corporation of India BHIM application 1.3 for Android does not properly restrict use of the OTP feature, which makes it easier for attackers to bypass authen…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1