Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Hluwa

#13363of 53,632
19.8Total CVSS
Vulnerabilities · 3
Medium
2
High
1
PT-2023-6516
5.5
2023-07-28
Apple · Music · CVE-2023-28203
**Name of the Vulnerable Software and Affected Versions** Apple Music versions prior to 4.2.0 **Description** The issue is related to insufficient access control in the Apple Music app for Android, which may allow an app to access a user's contacts. This could potentially lead to the disclosure of user contact information. **Recommendations** For versions prior to 4.2.0, update to Apple Music 4.2.0 for Android to resolve the issue.
PT-2023-13203
7.5
2023-02-27
Apple · Music · CVE-2022-32836
**Name of the Vulnerable Software and Affected Versions** Apple Music versions prior to 3.9.10 **Description** The issue allows an app to potentially access user-sensitive data due to inadequate state management. This has been addressed with improved state management. **Recommendations** For versions prior to 3.9.10, update to Apple Music 3.9.10 for Android to resolve the issue.
PT-2022-19072
6.8
2022-04-11
Samsung · Galaxy Store · CVE-2022-28542
**Name of the Vulnerable Software and Affected Versions** Galaxy Store versions prior to 4.5.40.5 **Description** The issue is related to improper sanitization of incoming intent in Galaxy Store, allowing local attackers to access privileged content providers as Galaxy Store permission. **Recommendations** For Galaxy Store versions prior to 4.5.40.5, update to version 4.5.40.5 or later to resolve the issue.