QID 630824
QID 630824: For ios Vulnerability CVE-2021-40180
In the WeChat application 8.0.10 for Android and iOS, a mini program can obtain sensitive information from a user's address book via wx.searchContacts.
On successful exploitation, it could allow an attacker to execute code.
Solution
Upgrade to the latest packages which contain a patch. Refer to CVE-2021-40180 to address this issue and obtain more information.
Vendor References
- CVE-2021-40180 -
nvd.nist.gov/vuln/detail/CVE-2021-40180
CVEs related to QID 630824
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-40180 | iOS |
|