Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qcg7-33w2-mc2x

Опубликовано: 18 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.

Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.

EPSS

Процентиль: 5%
0.00022
Низкий

3.3 Low

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 3.3
nvd
почти 2 года назад

Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.

EPSS

Процентиль: 5%
0.00022
Низкий

3.3 Low

CVSS3

Дефекты

CWE-732