CVE-2026-75553

Summary

Smartphone application Tohoku Electric Power "Yorisou e Net" uses a hard-coded cryptographic key, which may allow an attacker to retrieve a hard-coded cryptographic key from the affected product.

Affected Software

VendorProductVersion RangeStatus
Tohoku Electric Power Company, IncorporatedTohoku Electric Power “Yorisou e Net” Android App0 < 2.8.0affected
Tohoku Electric Power Company, IncorporatedTohoku Electric Power “Yorisou e Net” iOS App0 < 2.8.0affected

Weaknesses

  • CWE-321: Use of hard-coded cryptographic key

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References