PT-2024-33529 · Gaminghub · Gaminghub

Ken Gannon

·

Published

2024-12-03

·

Updated

2025-04-14

·

CVE-2024-49419

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions GamingHub versions prior to 6.1.03.4 in Korea GamingHub versions prior to 7.1.02.4 in Global
Description The issue is related to insufficient verification of URL authenticity in GamingHub, allowing remote attackers to load an arbitrary URL in its webview.
Recommendations For GamingHub versions prior to 6.1.03.4 in Korea, update to version 6.1.03.4 or later. For GamingHub versions prior to 7.1.02.4 in Global, update to version 7.1.02.4 or later.

Fix

Related Identifiers

CVE-2024-49419
ZDI-25-226

Affected Products

Gaminghub