RSSAmplifier

Home - Tom Barrasso · Feb 23, 2023

CVE-2023-27108

0
Sign in to vote or save

This site does not allow itself to be embedded. You can still read it on the original site — the toolbar below keeps your place in the directory.

A vulnerability in KaiOS 3.0 where the pre-installed Communications application exposes a Web Activity that returns the user’s call log without origin or permission checks, enabling attackers to inject JavaScript code and transmit call logs to remote servers.

Read on barrasso.me

Comments

Nothing yet. Say the first thing.

    Sign in to join the conversation.