CVE-2023-41828

CVSS 3.1 Score 4.4 of 10 (medium)

Details

Published May 3, 2024
CWE ID 927

Summary

CVE-2023-41828 is a vulnerability affecting the Motorola Phone application, where an implicit intent export issue was identified. This flaw allows unauthorized access to a non-exported content provider, potentially exposing sensitive data without proper authorization. An attacker could exploit this vulnerability by sending malicious intents to the application, gaining unintended access to the protected content provider. The impact of this issue could lead to data breaches or unauthorized functionality. Users are advised to update their Motorola Phone application to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share