Impersonation Attack via Unverified Messages
CVE-2023-6323
6.5MEDIUM
What is CVE-2023-6323?
The ThroughTek Kalay SDK is susceptible to a vulnerability that fails to verify the authenticity of incoming messages. This lack of robust verification mechanisms allows an attacker to impersonate a legitimate authoritative server, potentially leading to unauthorized access or manipulation of data. Users of the Kalay SDK should be aware of this vulnerability's implications and take necessary precautions to mitigate risks associated with unauthorized impersonation.
Affected Version(s)
Kalay SDK 0 < 4.3.4.2
