VulnerabilityModified
CVE-2020-5532
ilbo App (ilbo App for Android prior to version 1.1.8 and ilbo App for iOS prior to version 1.2.01) allows an attacker on the same network segment to bypass authentication and to view the images which were recorded by the other ilbo user's device via…
MEDIUM 4.3EPSS 0.92%
Does this matter?
Lower severity and a low EPSS score (0.92%). Track it; it rarely justifies an emergency change on its own.
Description
ilbo App (ilbo App for Android prior to version 1.1.8 and ilbo App for iOS prior to version 1.2.01) allows an attacker on the same network segment to bypass authentication and to view the images which were recorded by the other ilbo user's device via unspecified vectors.
- CVSS 3.1
- 4.3 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 0.92% probability · 58th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-287
- Affected
- extrun/ilbo
- Source
- vultures@jpcert.or.jp
References
- http://jvn.jp/en/jp/JVN35496038/index.htmlThird Party Advisory
- https://apps.apple.com/us/app/ilbo/id1116864683Product, Release Notes
- https://play.google.com/store/apps/details?id=jp.extrun.ilbo&hl=enProduct
- http://jvn.jp/en/jp/JVN35496038/index.htmlThird Party Advisory
- https://apps.apple.com/us/app/ilbo/id1116864683Product, Release Notes
- https://play.google.com/store/apps/details?id=jp.extrun.ilbo&hl=enProduct
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.