A SQL injection in the flutter_downloader component through 1.11.1 for iOS allows remote attackers to steal session tokens and overwrite arbitrary files inside the app's container. The internal database of the framework is exposed to the local user if an app uses UIFileSharingEnabled and LSSupportsOpeningDocumentsInPlace properties. As a result, local users can obtain the same attack primitives as remote attackers by tampering with the internal database of the framework on the device.
References
Link | Resource |
---|---|
https://pub.dev/packages/flutter_downloader/changelog | Release Notes |
https://seredynski.com/articles/exploiting-ios-apps-to-extract-session-tokens-and-overwrite-user-data | Exploit Third Party Advisory |
https://pub.dev/packages/flutter_downloader/changelog | Release Notes |
https://seredynski.com/articles/exploiting-ios-apps-to-extract-session-tokens-and-overwrite-user-data | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 08:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://pub.dev/packages/flutter_downloader/changelog - Release Notes | |
References | () https://seredynski.com/articles/exploiting-ios-apps-to-extract-session-tokens-and-overwrite-user-data - Exploit, Third Party Advisory |
22 Sep 2023, 14:41
Type | Values Removed | Values Added |
---|---|---|
First Time |
Patreon flutter Downloader
Apple Patreon Apple iphone Os |
|
References | (MISC) https://pub.dev/packages/flutter_downloader/changelog - Release Notes | |
References | (MISC) https://seredynski.com/articles/exploiting-ios-apps-to-extract-session-tokens-and-overwrite-user-data - Exploit, Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
CWE | CWE-89 | |
CPE | cpe:2.3:a:patreon:flutter_downloader:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:* |
19 Sep 2023, 09:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-19 09:15
Updated : 2024-11-21 08:21
NVD link : CVE-2023-41387
Mitre link : CVE-2023-41387
CVE.ORG link : CVE-2023-41387
JSON object : View
Products Affected
apple
- iphone_os
patreon
- flutter_downloader
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')