PT-2018-11829 · Line · Line
Boonpoj Thongakaraniroj
+1
·
Published
2018-08-16
·
Updated
2024-08-05
·
CVE-2018-13446
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
LINE application version 8.8.1
Description
An issue in the LINE application allows authentication bypass via runtime manipulation. This manipulation forces a certain method's return value to
true, enabling an attacker to authenticate with an arbitrary passcode.Recommendations
For version 8.8.1, consider disabling the Passcode feature until a patch is available to prevent potential authentication bypass attacks.
Exploit
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Line