Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In January 2024
An issue in kimono-oldnew mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-01-26
Path Traversal: '/../filedir' vulnerability in Biges Safe Life Technologies Electronics Inc. VGuard allows Absolute Path Traversal.This issue affects VGuard: before V500.0003.R008.4011.C0012.B351.C.
CVSS Score
7.5
EPSS Score
0.003
Published
2024-01-26
An issue was discovered in TRENDnet TEW-824DRU version 1.04b01, allows unauthenticated attackers to execute arbitrary code via the system.ntp.server parameter in the sub_420AE0() function. The attack can be launched remotely.
CVSS Score
7.8
EPSS Score
0.001
Published
2024-01-26
Improper authorization in handler for custom URL scheme issue in "Mercari" App for Android prior to version 5.78.0 allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App. As a result, the user may become a victim of a phishing attack.
CVSS Score
6.1
EPSS Score
0.002
Published
2024-01-26
An issue in kosei entertainment esportsstudioLegends mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-01-26
An issue in angel coffee mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-01-26
An issue in mimasaka_farm mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-01-26
An issue in UNITED BOXING GYM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-01-26
An issue in GINZA CAFE mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-01-26
An issue in CHIGASAKI BAKERY mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
CVSS Score
5.4
EPSS Score
0.002
Published
2024-01-26


Contact Us

Shodan ® - All rights reserved