CVE-2024-28745
CVE-2024-28745
Improper export of Android application components issue exists in 'ABEMA' App for Android prior to 10.65.0 allowing another app installed on the user's device to access an arbitrary URL on 'ABEMA' App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Affected products
AbemaTV, Inc. · 'ABEMA' App for AndroidWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://jvn.jp/en/jp/JVN70640802/