Описание
The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows attackers to bypass a URL whitelist protection mechanism and obtain API access via unspecified vectors.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Patch
- Patch
- Vendor Advisory
- Vendor Advisory
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1Версия до 1.0.2 (включая)Версия до 1.6.0 (включая)
Одно из
cpe:2.3:a:ntt-bp:japan_connected-free_wi-fi:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:ntt-bp:japan_connected-free_wi-fi:*:*:*:*:*:android:*:*
EPSS
Процентиль: 60%
0.00401
Низкий
6.8 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
больше 3 лет назад
The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows attackers to bypass a URL whitelist protection mechanism and obtain API access via unspecified vectors.
EPSS
Процентиль: 60%
0.00401
Низкий
6.8 Medium
CVSS2
Дефекты
CWE-264