Description
Improper access control vulnerability in Gurunavi App for Android ver.10.0.10 and earlier and for iOS ver.11.1.2 and earlier allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App.
Related CPE's
a
gurunavi
gurunavi
2
References
https://jvn.jp/en/jp/JVN54025691/index.html
Third Party Advisory
https://jvn.jp/en/jp/JVN54025691/index.html
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
7.5 · High
Information
Source identifier
Vulnerability status
Modified
Published
2021-04-25T23:15:07.800Z
4 years agoLast modified
2024-11-21T04:47:01.260Z
1 year ago