PT-2018-11829 · Line · Line
Boonpoj Thongakaraniroj
+1
·
Publicado
2018-08-16
·
Atualizado
2024-08-05
·
CVE-2018-13446
CVSS v3.1
7.0
Alta
| Vetor | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
LINE application version 8.8.1
Description
An issue in the LINE application allows authentication bypass via runtime manipulation. This manipulation forces a certain method's return value to
true, enabling an attacker to authenticate with an arbitrary passcode.Recommendations
For version 8.8.1, consider disabling the Passcode feature until a patch is available to prevent potential authentication bypass attacks.
Exploit
Correção
Improper Authentication
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Line