Description
Improper authorization in handler for custom URL scheme issue in 'Skylark' App for Android 6.2.13 and earlier and 'Skylark' App for iOS 6.2.13 and earlier allows an attacker to lead the application to access an arbitrary web site via another application installed on the user's device.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-52242 | Improper authorization in handler for custom URL scheme issue in 'Skylark' App for Android 6.2.13 and earlier and 'Skylark' App for iOS 6.2.13 and earlier allows an attacker to lead the application to access an arbitrary web site via another application installed on the user's device. |
References
History
Thu, 05 Dec 2024 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 05 Dec 2024 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper authorization in handler for custom URL scheme issue in 'Skylark' App for Android 6.2.13 and earlier and 'Skylark' App for iOS 6.2.13 and earlier allows an attacker to lead the application to access an arbitrary web site via another application installed on the user's device. | |
| Weaknesses | CWE-939 | |
| References |
| |
| Metrics |
cvssV3_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-12-05T11:33:27.693Z
Reserved: 2024-11-27T08:11:25.031Z
Link: CVE-2024-54014
Updated: 2024-12-05T11:33:15.432Z
Status : Received
Published: 2024-12-05T03:15:14.530
Modified: 2024-12-05T03:15:14.530
Link: CVE-2024-54014
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD