CVE-2023-39733: High severity tonton-tei vulnerability
Published Oct 24, 2023
·Updated
The leakage of the client secret in TonTon-Tei Line v13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages.
Affected Software
1 affected component
linecorp Tonton-tei=13.6.1
Event History
Oct 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for the leakage of client secret in TonTon-Tei Line v13.6.1?
The vulnerability ID for the leakage of client secret in TonTon-Tei Line v13.6.1 is CVE-2023-39733.
2
What is the severity of CVE-2023-39733?
The severity of CVE-2023-39733 is high with a severity score of 8.2.
3
How can attackers exploit CVE-2023-39733?
Attackers can exploit CVE-2023-39733 to obtain the channel access token and send crafted broadcast messages.
4
Which version of TonTon-Tei is affected by CVE-2023-39733?
Version 13.6.1 of TonTon-Tei is affected by CVE-2023-39733.
5
Is there any reference documentation available for CVE-2023-39733?
Yes, you can find reference documentation for CVE-2023-39733 at the following links: [Link 1](https://github.com/syz913/CVE-reports/blob/main/CVE-2023-39733.md), [Link 2](https://liff.line.me/1656987103-bk5k9PO4).