Description


Improper authorization in the custom URL scheme handler in "Rikunabi NEXT" App for Android prior to ver. 11.5.0 allows a malicious intent to lead the vulnerable App to access an arbitrary website.

Related CPE's


References



Weaknesses



CWE-862

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

6.1 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2023-08-16T07:15:11.793Z

2 years ago

Last modified

2024-11-21T07:15:33.583Z

1 year ago