PT-2023-22404 · Unknown · Blue Light Filter

Published

2023-06-09

·

Updated

2025-01-06

·

CVE-2023-29757

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Blue Light Filter version 1.5.5
Description The issue allows unauthorized apps to cause escalation of privilege attacks by manipulating the SharedPreference files. This can lead to unauthorized access and control.
Recommendations For Blue Light Filter version 1.5.5, consider restricting access to the SharedPreference files until a patch is available. As a temporary workaround, review and limit the permissions of installed apps to minimize the risk of exploitation.

Exploit

Fix

Insecure Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-29757

Affected Products

Blue Light Filter