Логотип exploitDog
bind:CVE-2025-41408
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-41408

Количество 2

Количество 2

nvd логотип

CVE-2025-41408

5 месяцев назад

Improper authorization in handler for custom URL scheme issue in "Yahoo! Shopping" App for Android versions prior to 14.15.0 allows a remote unauthenticated attacker may lead a user to access an arbitrary website on the vulnerable App. As a result, the user may become a victim of a phishing attack.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-h642-mphj-q5v4

5 месяцев назад

Improper authorization in handler for custom URL scheme issue in "Yahoo! Shopping" App for Android versions prior to 14.15.0 allows a remote unauthenticated attacker may lead a user to access an arbitrary website on the vulnerable App. As a result, the user may become a victim of a phishing attack.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-41408

Improper authorization in handler for custom URL scheme issue in "Yahoo! Shopping" App for Android versions prior to 14.15.0 allows a remote unauthenticated attacker may lead a user to access an arbitrary website on the vulnerable App. As a result, the user may become a victim of a phishing attack.

CVSS3: 4.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-h642-mphj-q5v4

Improper authorization in handler for custom URL scheme issue in "Yahoo! Shopping" App for Android versions prior to 14.15.0 allows a remote unauthenticated attacker may lead a user to access an arbitrary website on the vulnerable App. As a result, the user may become a victim of a phishing attack.

CVSS3: 4.3
0%
Низкий
5 месяцев назад

Уязвимостей на страницу