Yodobashi App for Android versions 1.8.7 and earlier allows remote attackers to lead a user to access an arbitrary website via the vulnerable App. As a result, the user may become a victim of a phishing attack.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN77402327/index.html | Not Applicable |
https://www.tenable.com/cve/CVE-2020-5627 | Third Party Advisory |
Configurations
Information
Published : 2020-09-09 02:15
Updated : 2020-09-14 10:49
NVD link : CVE-2020-5627
Mitre link : CVE-2020-5627
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
yodobashi
- yodobashi