An issue was discovered in the MensaMax (aka com.breustedt.mensamax) application 4.3 for Android. Cleartext Transmission of Sensitive Information allows man-in-the-middle attackers to eavesdrop authentication information between the application and the server.
- https://seclists.org/bugtraq/2018/Oct/3
No PoCs found on GitHub currently.