PT-2023-26764 · Unknown · Hirochankakiwaiting

Published

2023-11-02

·

Updated

2024-09-05

·

CVE-2023-39057

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions hirochanKAKIwaiting version 13.6.1
Description An information leak in hirochanKAKIwaiting allows attackers to obtain the channel access token and send crafted messages.
Recommendations For hirochanKAKIwaiting version 13.6.1, update to a version that fixes the information leak issue to prevent attackers from obtaining the channel access token and sending crafted messages. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2023-39057

Affected Products

Hirochankakiwaiting