Linecorp

Line

68 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.06%
  • Veröffentlicht 16.08.2018 20:29:02
  • Zuletzt bearbeitet 21.11.2024 03:47:05

An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method to disable passcode authentication. NOTE: the vendor indicates that ...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 16.08.2018 20:29:01
  • Zuletzt bearbeitet 21.11.2024 03:47:05

An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The LAContext class for Biometric (TouchID) validation allows authentication bypass by overriding the LAContext return Boolean value to be "true" because the kSecAccessContr...

  • EPSS 0.26%
  • Veröffentlicht 26.06.2018 14:29:01
  • Zuletzt bearbeitet 21.11.2024 03:38:35

Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

  • EPSS 0.11%
  • Veröffentlicht 23.02.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:38:23

LINE for iOS version 7.1.3 to 7.1.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

  • EPSS 2.94%
  • Veröffentlicht 20.04.2017 18:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code.

  • EPSS 0.06%
  • Veröffentlicht 12.07.2016 02:00:11
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Untrusted search path vulnerability in LINE and LINE Installer 4.7.0 and earlier on Windows allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.

  • EPSS 0.38%
  • Veröffentlicht 19.02.2016 19:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

LINE 4.3.0.724 and earlier on Windows and 4.3.1 and earlier on OS X allows remote authenticated users to cause a denial of service (application crash) via a crafted post that is mishandled when displaying a Timeline.

Exploit
  • EPSS 0.13%
  • Veröffentlicht 16.08.2014 04:39:55
  • Zuletzt bearbeitet 12.04.2025 10:46:40

LINE 3.2.1.83 and earlier on Windows and 3.2.1 and earlier on OS X does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.