CVE-2024-1662

Missing Authentication for Critical Function, Missing Authorization vulnerability in PORTY Smart Tech Technology Joint Stock Company PowerBank Application allows Retrieve Embedded Sensitive Data.This issue affects PowerBank Application: before 2.02.
References
Link Resource
https://www.usom.gov.tr/bildirim/tr-24-0602 Third Party Advisory
https://www.usom.gov.tr/bildirim/tr-24-0602 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:porty:powerbank:*:*:*:*:*:*:*:*

History

14 Oct 2025, 13:15

Type Values Removed Values Added
Summary (en) Exposure of Sensitive Information to an Unauthorized Actor vulnerability in PORTY Smart Tech Technology Joint Stock Company PowerBank Application allows Retrieve Embedded Sensitive Data.This issue affects PowerBank Application: before 2.02. (en) Missing Authentication for Critical Function, Missing Authorization vulnerability in PORTY Smart Tech Technology Joint Stock Company PowerBank Application allows Retrieve Embedded Sensitive Data.This issue affects PowerBank Application: before 2.02.
CWE CWE-200 CWE-306
CWE-862

12 Sep 2025, 07:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.2
v2 : unknown
v3 : 7.5

21 Nov 2024, 08:51

Type Values Removed Values Added
References () https://www.usom.gov.tr/bildirim/tr-24-0602 - Third Party Advisory () https://www.usom.gov.tr/bildirim/tr-24-0602 - Third Party Advisory
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 7.2

11 Jun 2024, 17:27

Type Values Removed Values Added
First Time Porty powerbank
Porty
Summary
  • (es) Exposición de información confidencial a una vulnerabilidad de actor no autorizado en la aplicación PowerBank de la sociedad anónima PORTY Smart Tech Technology permite recuperar datos confidenciales incrustados. Este problema afecta la aplicación PowerBank: antes de 2.02.
References () https://www.usom.gov.tr/bildirim/tr-24-0602 - () https://www.usom.gov.tr/bildirim/tr-24-0602 - Third Party Advisory
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : 7.2
v2 : unknown
v3 : 7.5
CPE cpe:2.3:a:porty:powerbank:*:*:*:*:*:*:*:*

05 Jun 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-05 12:15

Updated : 2025-10-14 13:15


NVD link : CVE-2024-1662

Mitre link : CVE-2024-1662

CVE.ORG link : CVE-2024-1662


JSON object : View

Products Affected

porty

  • powerbank
CWE
CWE-306

Missing Authentication for Critical Function

CWE-862

Missing Authorization

NVD-CWE-noinfo