Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier and MASmobile Classic iOS version 1.7.24 and earlier which allows remote attackers to retrieve sensitive data  including customer data, security system status, and event history.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Carrier

Published: 2024-03-16T00:00:00

Updated: 2024-08-28T16:23:17.832Z

Reserved: 2023-06-22T00:00:00

Link: CVE-2023-36483

cve-icon Vulnrichment

Updated: 2024-08-02T16:45:57.162Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-16T05:15:18.577

Modified: 2024-03-21T22:15:10.573

Link: CVE-2023-36483

cve-icon Redhat

No data.