Meatmeet Pro Mobile Application Clear Text Traffic Vulnerability

Vulnerability

A vulnerability exists in the Meatmeet Pro mobile application version 1.1.2.0, allowing clear text traffic to all domains. The application communicates with an API server over HTTP, which can be intercepted by an adversary upstream. This interception could lead to a complete compromise of the user's account if authentication tokens are captured or if the MD5 hash used for login is cracked.

Impact

Exploitation of this vulnerability could result in a total compromise of the user's account on the Meatmeet Pro mobile application.

Reproduction

The vulnerability can be reproduced by using a network monitoring tool to intercept and inspect the unencrypted HTTP traffic between the Meatmeet Pro mobile application and the API server. This can be done by placing the interception tool 'upstream' of the application, such as through a proxy or by using a man-in-the-middle attack that exploits the lack of encryption.

Added: Dec 10, 2025, 9:22 PM
Updated: Dec 10, 2025, 9:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.1
exploitability
7.3
remediation
0.0
relevance
1.4
threat
6.4
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.