CVE-2023-48128: Medium severity line vulnerability
Published Jan 26, 2024
·Updated
An issue in UNITED BOXING GYM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.
Affected Software
1 affected component
linecorp Line=13.6.1
Event History
Jan 26, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-48128?
CVE-2023-48128 is rated as a high severity vulnerability due to its potential for exploitation through crafted notifications.
2
How do I fix CVE-2023-48128?
To fix CVE-2023-48128, update to the latest version of the LINE app that addresses this vulnerability.
3
What type of vulnerability is CVE-2023-48128?
CVE-2023-48128 is a notification abuse vulnerability that involves the leakage of the channel access token.
4
What software is affected by CVE-2023-48128?
CVE-2023-48128 affects the UNITED BOXING GYM mini-app on LINE version 13.6.1.
5
Who can exploit CVE-2023-48128?
CVE-2023-48128 can potentially be exploited by attackers who are able to send crafted malicious notifications.