Security Advisory

CVE-2024-28745

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-03-18 03:18:21
Last updated 2024-11-19 19:39:30
Assigner jpcert
CVSS score not scored
State PUBLISHED

Description

Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.