A valid set of credentials in a .js file and a static token for
communication were obtained from the decompiled IPA. An attacker could
use the information to disrupt normal use of the application by changing
the translation files and thus weaken the integrity of normal use.
References
Configurations
No configuration.
History
17 Jan 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-17 17:15
Updated : 2025-01-17 17:15
NVD link : CVE-2024-53683
Mitre link : CVE-2024-53683
CVE.ORG link : CVE-2024-53683
JSON object : View
Products Affected
No product.
CWE
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere