Improper authorization in handler for custom URL scheme vulnerability in あすけんダイエット (asken diet) for Android versions from v.3.0.0 to v.4.2.x allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN38034268/index.html | Third Party Advisory |
https://www.asken.jp/s/login/?to=/information | Permissions Required Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: jpcert
Published: 2021-06-22T01:35:45
Updated: 2021-06-22T01:35:45
Reserved: 2020-12-17T00:00:00
Link: CVE-2021-20733
JSON object: View
NVD Information
Status : Modified
Published: 2021-06-22T02:15:07.133
Modified: 2023-11-07T03:29:13.863
Link: CVE-2021-20733
JSON object: View
Redhat Information
No data.
CWE