CVE-2013-511231.01.2020, 14:15Evernote before 5.5.1 has insecure PIN storageEnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTNIST4.6 MEDIUMPHYSICALLOWNONECVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NmitreCNA------CVEADP------Awaiting analysisThis vulnerability is currently awaiting analysis.Base ScoreCVSS 3.xEPSS ScorePercentile: 29%Known Exploits!https://blog.c22.cc/advisories/cve-2013-5112-evernote-android-insecure-storage-of-pin-data-bypass-of-pin-protection/https://blog.c22.cc/advisories/cve-2013-5112-evernote-android-insecure-storage-of-pin-data-bypass-of-pin-protection/Common Weakness EnumerationCWE-287 - Improper AuthenticationWhen an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.Referenceshttps://blog.c22.cc/advisories/cve-2013-5112-evernote-android-insecure-storage-of-pin-data-bypass-of-pin-protection/https://exchange.xforce.ibmcloud.com/vulnerabilities/89735https://blog.c22.cc/advisories/cve-2013-5112-evernote-android-insecure-storage-of-pin-data-bypass-of-pin-protection/https://exchange.xforce.ibmcloud.com/vulnerabilities/89735