Vulnerabilities > CVE-2021-20777 - Missing Authorization vulnerability in Gu-Global GU

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE

Summary

Improper authorization in handler for custom URL scheme vulnerability in GU App for Android versions from 4.8.0 to 5.0.2 allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App.

Vulnerable Configurations

Part Description Count
Application
Gu-Global
1

Common Weakness Enumeration (CWE)