CVE-2018-11544: Theolivetree FTP Server
Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.
The Olive Tree Ftp Server application 1.32 for Android has Insecure Data Storage because a username and password are stored in the /data/data/com.theolivetree.ftpserver/shared_prefs/com.theolivetree.ftpserver_preferences.xml file as the prefUsername and prefUserpass strings.
Affected products
- Theolivetree FTP Server: version 1.32 only
Published 2018-05-29. Last modified 2026-06-17.