SoLive 1.6.14 thru 1.6.20 for Android exists exposed component, the component provides the method to modify the SharedPreference file. The attacker can use the method to modify the data in any SharedPreference file, these data will be loaded into the memory when the application is opened. Depending on how the data is used, this can result in various attack consequences, such as ad display exceptions.
References
Link | Resource |
---|---|
https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29732/CVE%20detail.md | Exploit Third Party Advisory |
https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29732/CVE%20detail.md | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 07:57
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29732/CVE%20detail.md - Exploit, Third Party Advisory |
06 Jun 2023, 17:14
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:loka:solive:*:*:*:*:*:android:*:* | |
First Time |
Loka solive
Loka |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
References | (MISC) https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29732/CVE%20detail.md - Exploit, Third Party Advisory | |
CWE | CWE-276 |
30 May 2023, 21:10
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-30 20:15
Updated : 2024-11-21 07:57
NVD link : CVE-2023-29732
Mitre link : CVE-2023-29732
CVE.ORG link : CVE-2023-29732
JSON object : View
Products Affected
loka
- solive
CWE
CWE-276
Incorrect Default Permissions