Vulnerabilities > Linecorp > Line > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-11-09 CVE-2023-47363 Inadequate Encryption Strength vulnerability in Linecorp Line 13.6.1
The leakage of channel access token in F.B.P members Line 13.6.1 allows remote attackers to send malicious notifications to victims.
network
low complexity
linecorp CWE-326
6.5
2023-11-09 CVE-2023-47364 Inadequate Encryption Strength vulnerability in Linecorp Line 13.6.1
The leakage of channel access token in nagaoka taxi Line 13.6.1 allows remote attackers to send malicious notifications to victims
network
low complexity
linecorp CWE-326
6.5
2023-11-09 CVE-2023-47365 Inadequate Encryption Strength vulnerability in Linecorp Line 13.6.1
The leakage of channel access token in Lil.OFF-PRICE STORE Line 13.6.1 allows remote attackers to send malicious notifications to victims.
network
low complexity
linecorp CWE-326
6.5
2023-11-09 CVE-2023-47366 Inadequate Encryption Strength vulnerability in Linecorp Line 13.6.1
The leakage of channel access token in craft_members Line 13.6.1 allows remote attackers to send malicious notifications to victims.
network
low complexity
linecorp CWE-326
6.5
2023-11-09 CVE-2023-47367 Inadequate Encryption Strength vulnerability in Linecorp Line 13.6.1
The leakage of channel access token in platinum clinic Line 13.6.1 allows remote attackers to send malicious notifications to victims.
network
low complexity
linecorp CWE-326
6.5
2023-11-09 CVE-2023-47369 Inadequate Encryption Strength vulnerability in Linecorp Line 13.6.1
The leakage of channel access token in best_training_member Line 13.6.1 allows remote attackers to send malicious notifications.
network
low complexity
linecorp CWE-326
6.5
2023-10-02 CVE-2023-43297 Improper Enforcement of Message Integrity During Transmission in a Communication Channel vulnerability in Linecorp Line 13.6.1
An issue in animal-art-lab v13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.
network
low complexity
linecorp CWE-924
5.4
2022-04-27 CVE-2022-29505 Unspecified vulnerability in Linecorp Line
Due to build misconfiguration in openssl dependency, LINE for Windows before 7.8 is vulnerable to DLL injection that could lead to privilege escalation.
local
linecorp
4.4
2022-01-20 CVE-2022-22820 Improper Input Validation vulnerability in Linecorp Line
Due to the lack of media file checks before rendering, it was possible for an attacker to cause abnormal CPU consumption for message recipient by sending specially crafted gif image in LINE for Windows before 7.4.
local
low complexity
linecorp CWE-20
5.5
2021-09-22 CVE-2021-41011 Unspecified vulnerability in Linecorp Line
LINE client for iOS before 11.15.0 might expose authentication information for a certain service to external entities under certain conditions.
network
linecorp
4.3