CVE-2023-39739: Infoleak
Published Oct 24, 2023
·Updated
The leakage of the client secret in REGINA SWEETS&BAKERY Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messages.
Affected Software
1 affected component
linecorp Regina Sweets\&bakery=13.6.1
Event History
Oct 24, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-39739?
The severity of CVE-2023-39739 is high with a severity value of 8.2.
2
How can attackers exploit CVE-2023-39739?
Attackers can exploit CVE-2023-39739 by obtaining the channel access token and sending crafted broadcast messages.
3
What software version is affected by CVE-2023-39739?
REGINA SWEETS&BAKERY Line 13.6.1 is affected by CVE-2023-39739.
4
How can I fix CVE-2023-39739?
To fix CVE-2023-39739, update REGINA SWEETS&BAKERY Line to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2023-39739?
You can find more information about CVE-2023-39739 in the following references: [GitHub](https://github.com/syz913/CVE-reports/blob/main/CVE-2023-39739.md) and [Line LIFF documentation](https://liff.line.me/1656985266-EmlxqQQx).