Improper authorization in handler for custom URL scheme issue in 'ZOZOTOWN' App for Android versions prior to 7.39.6 allows an attacker to lead a user to access an arbitrary website via another application installed on the user's device. As a result, the user may become a victim of a phishing attack.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-02T03:07:46.969Z

Reserved: 2024-05-16T06:34:27.048Z

Link: CVE-2024-35298

cve-icon Vulnrichment

Updated: 2024-06-21T14:55:41.872Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-19T05:15:51.907

Modified: 2024-11-21T09:20:06.100

Link: CVE-2024-35298

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses