Information Disclosure Vulnerability in Anyihua iOS App by Mashang Consumer Finance Co., Ltd
CVE-2024-56959

6.5MEDIUM

What is CVE-2024-56959?

The Anyihua iOS app version 3.6.2 from Mashang Consumer Finance Co., Ltd contains a security flaw that enables attackers to leverage a specially crafted link to gain unauthorized access to sensitive user information. This vulnerability poses a substantial risk as it may expose personal data of users, highlighting the necessity for users to remain vigilant and for the vendor to issue appropriate updates addressing this issue.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.