CVE-2023-36621
Summary
| CVE | CVE-2023-36621 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-11-03 04:15:00 UTC |
| Updated | 2023-11-09 21:55:00 UTC |
| Description | An issue was discovered in the Boomerang Parental Control application through 13.83 for Android. The child can use Safe Mode to remove all restrictions temporarily or uninstall the application without the parents noticing. |
Risk And Classification
Problem Types: CWE-862
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nationaledtech | Boomerang | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| The hidden costs of parental control apps - SEC Consult | MISC | sec-consult.com | |
| Full Disclosure: SEC Consult SA-20230628-0 :: Stored XSS & Privilege Escalation in Boomerang Parental Control App | MISC | seclists.org | |
| Boomerang Parental Control - Taking the battle out of screen time | MISC | useboomerang.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.