Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Nobuaki Nakazawa

Pesquisador deSprout Inc.
#20983de 53,635
11.8CVSS total
Vulnerabilidades · 2
Média
2
PT-2023-10184
5.9
2023-10-31
Line · Line For Ios · CVE-2015-0897
**Name of the Vulnerable Software and Affected Versions** LINE for Android versions 5.0.2 and earlier LINE for iOS versions 5.0.0 and earlier **Description** The issue allows for a man-in-the-middle (MITM) attack because the application permits non-SSL/TLS communications. This enables an attacker to invoke any API from a script injected during the attack. **Recommendations** For LINE for Android versions 5.0.2 and earlier, update to a version that enforces SSL/TLS communications to prevent MITM attacks. For LINE for iOS versions 5.0.0 and earlier, update to a version that enforces SSL/TLS communications to prevent MITM attacks.
PT-2023-10315
5.9
2023-10-31
Line · Line For Android · CVE-2015-2968
**Name of the Vulnerable Software and Affected Versions** LINE@ for Android version 1.0.0 LINE@ for iOS version 1.0.0 **Description** The issue allows for a man-in-the-middle (MITM) attack due to the application's acceptance of non-SSL/TLS communications. This enables an attacker to invoke any API from a script injected during the attack. **Recommendations** For LINE@ for Android version 1.0.0, consider disabling non-SSL/TLS communications to minimize the risk of exploitation. For LINE@ for iOS version 1.0.0, consider disabling non-SSL/TLS communications to minimize the risk of exploitation.