PT-2023-22376 · Unknown · Bt21 X Bts Wallpaper
Published
2023-06-02
·
Updated
2025-01-08
·
CVE-2023-29724
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
BT21 x BTS Wallpaper app version 12
Description
The issue allows unauthorized apps to request permission to modify data in the database that records user personal preferences. This data is loaded into memory when the app is opened, and an attacker could tamper with it to cause an escalation of privilege attack.
Recommendations
For BT21 x BTS Wallpaper app version 12, consider restricting access to the database that stores user personal preferences to prevent unauthorized modifications until a fix is available. As a temporary workaround, review and monitor the app's permissions and data handling to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bt21 X Bts Wallpaper