cve/2023/CVE-2023-28153.md

18 lines
830 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2023-28153](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-28153)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
An issue was discovered in the Kiddoware Kids Place Parental Control application before 3.8.50 for Android. The child can remove all restrictions temporarily without the parents noticing by rebooting into Android Safe Mode and disabling the "Display over other apps" permission.
### POC
#### Reference
- https://sec-consult.com/vulnerability-lab/advisory/multiple-vulnerabilities-in-kiddoware-kids-place-parental-control-android-app/
#### Github
No PoCs found on GitHub currently.