Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://jvn.jp/en/jp/JVN70640802/ |
History
Tue, 19 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-732 | |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2024-03-18T03:18:21.948Z
Updated: 2024-11-19T19:39:30.469Z
Reserved: 2024-03-08T05:28:56.611Z
Link: CVE-2024-28745
Vulnrichment
Updated: 2024-08-02T00:56:58.159Z
NVD
Status : Awaiting Analysis
Published: 2024-03-18T04:15:09.987
Modified: 2024-11-21T09:06:52.440
Link: CVE-2024-28745
Redhat
No data.