CVE-2021-41011
- EPSS 0.39%
- Veröffentlicht 22.09.2021 15:15:10
- Zuletzt bearbeitet 21.11.2024 06:25:15
LINE client for iOS before 11.15.0 might expose authentication information for a certain service to external entities under certain conditions. This is usually impossible, but in combination with a server-side bug, attackers could get this informatio...
CVE-2021-36215
- EPSS 0.21%
- Veröffentlicht 08.09.2021 18:15:19
- Zuletzt bearbeitet 21.11.2024 06:13:19
LINE client for iOS 10.21.3 and before allows address bar spoofing due to inappropriate address handling.
CVE-2021-36216
- EPSS 0.06%
- Veröffentlicht 08.09.2021 18:15:19
- Zuletzt bearbeitet 21.11.2024 06:13:19
LINE for Windows 6.2.1.2289 and before allows arbitrary code execution via malicious DLL injection.
CVE-2021-36214
- EPSS 0.21%
- Veröffentlicht 13.07.2021 18:15:07
- Zuletzt bearbeitet 21.11.2024 06:13:19
LINE client for iOS before 10.16.3 allows cross site script with specific header in WebView.
CVE-2019-6010
- EPSS 0.56%
- Veröffentlicht 19.09.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:45:54
Integer overflow vulnerability in LINE(Android) from 4.4.0 to the version before 9.15.1 allows remote attackers to cause a denial of service (DoS) condition or execute arbitrary code via a specially crafted image.
- EPSS 0.06%
- Veröffentlicht 16.08.2018 20:29:02
- Zuletzt bearbeitet 21.11.2024 03:47:06
An issue was discovered in the LINE jp.naver.line application 8.8.1 for Android. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method's return value to true. In other words, an attacker could authent...
- EPSS 0.06%
- Veröffentlicht 16.08.2018 20:29:02
- Zuletzt bearbeitet 21.11.2024 03:47:05
An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method to disable passcode authentication. NOTE: the vendor indicates that ...
CVE-2018-13434
- EPSS 0.06%
- Veröffentlicht 16.08.2018 20:29:01
- Zuletzt bearbeitet 21.11.2024 03:47:05
An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The LAContext class for Biometric (TouchID) validation allows authentication bypass by overriding the LAContext return Boolean value to be "true" because the kSecAccessContr...
CVE-2018-0609
- EPSS 0.26%
- Veröffentlicht 26.06.2018 14:29:01
- Zuletzt bearbeitet 21.11.2024 03:38:35
Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
CVE-2018-0518
- EPSS 0.11%
- Veröffentlicht 23.02.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:38:23
LINE for iOS version 7.1.3 to 7.1.5 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.