Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier and MASmobile Classic iOS version 1.7.24 and earlier which allows remote attackers to retrieve sensitive data  including customer data, security system status, and event history.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: Carrier

Published: 2024-03-16T00:00:00

Updated: 2024-03-21T21:23:21.767Z

Reserved: 2023-06-22T00:00:00


Link: CVE-2023-36483

JSON object: View

cve-icon NVD Information

Status : Awaiting Analysis

Published: 2024-03-16T05:15:18.577

Modified: 2024-03-21T22:15:10.573


Link: CVE-2023-36483

JSON object: View

cve-icon Redhat Information

No data.

CWE