mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
21 lines
1.1 KiB
Markdown
21 lines
1.1 KiB
Markdown
![]() |
### [CVE-2023-36483](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-36483)
|
|||
|

|
|||
|

|
|||
|

|
|||
|

|
|||
|

|
|||
|
|
|||
|
### Description
|
|||
|
|
|||
|
Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android version 1.16.18 and earlier and MASmobile Classic iOS version 1.7.24 and earlierwhich allows remote attackers to retrieve sensitive data including customer data, security system status, and event history.
|
|||
|
|
|||
|
### POC
|
|||
|
|
|||
|
#### Reference
|
|||
|
No PoCs from references.
|
|||
|
|
|||
|
#### Github
|
|||
|
- https://github.com/NaInSec/CVE-LIST
|
|||
|
- https://github.com/fkie-cad/nvd-json-data-feeds
|
|||
|
|