CVE-2023-47366: Weak Encryption
Published Nov 9, 2023
·Updated
The leakage of channel access token in craftmembers Line 13.6.1 allows remote attackers to send malicious notifications to victims.
Affected Software
1 affected component
linecorp Line=13.6.1
Event History
Nov 9, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-47366?
CVE-2023-47366 is a vulnerability that allows remote attackers to send malicious notifications to victims by leaking the channel access token in craft_members Line 13.6.1.
2
How severe is CVE-2023-47366?
CVE-2023-47366 has a severity of 6.5, which is considered medium.
3
What software version is affected by CVE-2023-47366?
CVE-2023-47366 affects version 13.6.1 of Linecorp Line.
4
How can I fix CVE-2023-47366?
To fix CVE-2023-47366, it is recommended to update the affected software to a version that addresses the vulnerability.
5
Where can I find more information about CVE-2023-47366?
You can find more information about CVE-2023-47366 at this [link](https://github.com/syz913/CVE-reports/blob/main/craft_members.md).