Man-in-the-Middle Vulnerability in LINE for Android and iOS
CVE-2015-0897

5.9MEDIUM

Key Information:

Vendor
CVE Published:
31 October 2023

What is CVE-2015-0897?

The LINE application for Android and iOS is susceptible to man-in-the-middle (MITM) attacks due to its support for non-SSL/TLS communication methods. This vulnerability enables unauthorized scripts to invoke API calls, allowing attackers to intercept or manipulate user data. Users of LINE versions 5.0.2 for Android and 5.0.0 for iOS are particularly at risk, emphasizing the need for secure communication protocols to safeguard user privacy.

Affected Version(s)

LINE for Android version 5.0.2 and earlier

LINE for iOS version 5.0.0 and earlier

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.