First published: Tue Oct 24 2023(Updated: )
The leakage of the client secret in Tokueimaru_waiting Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linecorp Tokueimaru Waiting | =13.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39732 is a vulnerability in Tokueimaru_waiting Line 13.6.1 that allows attackers to obtain the channel access token and send crafted broadcast messages.
CVE-2023-39732 has a severity rating of 8.2, which is considered high.
Attackers can exploit CVE-2023-39732 by leaking the client secret and obtaining the channel access token to send crafted broadcast messages.
CVE-2023-39732 affects Linecorp Tokueimaru Waiting 13.6.1.
To fix CVE-2023-39732, it is recommended to update Tokueimaru_waiting Line to a version that is not affected by the vulnerability.