A vulnerability, which was classified as critical, was found in Platinum Mobile 1.0.4.850. Affected is /MobileHandler.ashx which leads to broken access control. The attack requires authentication. Upgrading to version 1.0.4.851 is able to address this issue. It is recommended to upgrade the affected component.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Link | Tags |
---|---|
http://seclists.org/fulldisclosure/2020/Oct/4 | mailing list exploit third party advisory |
https://vuldb.com/?id.162264 | vdb entry third party advisory |