QID 630710
Date Published: 2021-06-15
QID 630710: Goo Blog App For iOS ImproperAccess Vulnerability
Improper access control vulnerability in goo blog App for Android ver.1.2.25 and earlier and for iOS ver.1.3.3 and earlier allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App.
On successful exploitation, it could allow an attacker to execute code.
Solution
Upgrade to the latest packages which contain a patch. Refer to CVE-2021-20728 to address this issue and obtain more information.
Vendor References
- CVE-2021-20728 -
nvd.nist.gov/vuln/detail/CVE-2021-20728
CVEs related to QID 630710
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-20728 | iOS |
|