Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-33740: record/luowice_warning.md at main · zzh-newlearner/record

Incorrect access control in luowice v3.5.18 allows attackers to access cloud source code information via modification fo the Verify parameter in a warning message.

CVE
#vulnerability#android

Permalink

1 contributor

Users who have contributed to this file

com.generalcomp.luowice 3.5.18 has Incorrect Access Control****Vulnerability Type:

Incorrect Access Control

Vulnerability Version:

3.5.18

Recurring environment

≥Android 7.0

Vulnerability Description AND recurrence:

When fetching warning messages, modifying the Verify field will lead to the disclosure of cloud source code information, which may be further exploited

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907