CVE-2023-39737
CVSS 3.1 Score 8.2 of 10 (high)
Details
Summary
CVE-2023-39737 is a newly identified vulnerability in Matsuya Line 13.6.1. This issue results in the unintended disclosure of client secrets, enabling attackers to acquire channel access tokens. With access tokens in hand, adversaries can then transmit crafted broadcast messages to unsuspecting users. This vulnerability poses a significant risk to security, as it grants unauthorized users the ability to impersonate legitimate entities and potentially disrupt communications. It is crucial that affected organizations take immediate steps to address this issue and mitigate the risk of exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Linecorp