Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN70640802/ |
Configurations
No configuration.
History
19 Nov 2024, 20:35
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 3.3 |
Summary |
|
|
CWE | CWE-732 |
18 Mar 2024, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-18 04:15
Updated : 2024-11-19 20:35
NVD link : CVE-2024-28745
Mitre link : CVE-2024-28745
CVE.ORG link : CVE-2024-28745
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource