SoLive 1.6.14 thru 1.6.20 for Android exists exposed component, the component provides the method to modify the SharedPreference file. The attacker can use the method to modify the data in any SharedPreference file, these data will be loaded into the memory when the application is opened. Depending on how the data is used, this can result in various attack consequences, such as ad display exceptions.
References
Link | Resource |
---|---|
https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29732/CVE%20detail.md | Exploit Third Party Advisory |
https://github.com/LianKee/SO-CVEs/blob/main/CVEs/CVE-2023-29732/CVE%20detail.md | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-05-30 20:15
Updated : 2025-01-09 22:15
NVD link : CVE-2023-29732
Mitre link : CVE-2023-29732
CVE.ORG link : CVE-2023-29732
JSON object : View
Products Affected
loka
- solive
CWE
CWE-276
Incorrect Default Permissions