Vulnerabilities > CVE-2023-39507 - Missing Authorization vulnerability in Recruit Rikunabi Next
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
LOW Availability impact
NONE Summary
Improper authorization in the custom URL scheme handler in "Rikunabi NEXT" App for Android prior to ver. 11.5.0 allows a malicious intent to lead the vulnerable App to access an arbitrary website.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |