Line · Line For Android · CVE-2015-2968
**Name of the Vulnerable Software and Affected Versions**
LINE@ for Android version 1.0.0
LINE@ for iOS version 1.0.0
**Description**
The issue allows for a man-in-the-middle (MITM) attack due to the application's acceptance of non-SSL/TLS communications. This enables an attacker to invoke any API from a script injected during the attack.
**Recommendations**
For LINE@ for Android version 1.0.0, consider disabling non-SSL/TLS communications to minimize the risk of exploitation.
For LINE@ for iOS version 1.0.0, consider disabling non-SSL/TLS communications to minimize the risk of exploitation.