CVE-2024-56962: Medium severity tencent wesing vulnerability
Published Jan 27, 2025
·Updated
An issue in Tencent Technology (Shanghai) Co., Ltd WeSing iOS v9.3.39 allows attackers to access sensitive user information via supplying a crafted link.
Affected Software
1 affected component
Tencent WeSing
Event History
Jan 27, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-56962?
CVE-2024-56962 is rated as a high severity vulnerability due to its potential to expose sensitive user information.
2
How do I fix CVE-2024-56962?
To address CVE-2024-56962, update Tencent WeSing to the latest version provided by the vendor.
3
What kind of information is at risk in CVE-2024-56962?
CVE-2024-56962 can expose sensitive user information, including personal data accessed through a crafted link.
4
Who is affected by CVE-2024-56962?
Users of Tencent WeSing iOS version 9.3.39 are affected by CVE-2024-56962.
5
What is the attack vector for CVE-2024-56962?
The attack vector for CVE-2024-56962 involves supplying a crafted link that exploits a vulnerability in the app.