CVE-2025-41408 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper authorization in handler for custom URL scheme issue in "Yahoo! Shopping" App for Android versions prior to 14.15.0 allows a remote unauthenticated att…
Medium CVSS: 5.3

CVE-2025-41408

Improper authorization in handler for custom URL scheme issue in "Yahoo! Shopping" App for Android versions prior to 14.15.0 allows a remote unauthenticated attacker may lead a user to access an arbitrary website on the vulnerable App. As a result, the user may become a victim of a phishing attack.
Vendor
-
Product
-
CWE
CWE-939
Yayın Tarihi
2025-09-05 06:15:30
Güncelleme
2025-09-05 17:47:10
Source Identifier
vultures@jpcert.or.jp
KEV Date Added
-

Kategoriler

Referanslar