Security Advisory

CVE-2024-28745

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-18 03:18:21
Last updated 2024-11-19 19:39:30
Assigner jpcert
State PUBLISHED

Description

Improper export of Android application components issue exists in ABEMA App for Android prior to 10.65.0 allowing another app installed on the users device to access an arbitrary URL on ABEMA App for Android via Intent. If this vulnerability is exploited, an arbitrary website may be displayed on the app, and as a result, the user may become a victim of a phishing attack.