CVE-2024-28745
CVE-2024-28745
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3.3EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
18 Mar 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Affected products
AbemaTV, Inc. · 'ABEMA' App for AndroidWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://jvn.jp/en/jp/JVN70640802/