6.1
CVSSv3

CVE-2024-23388

Published: 26/01/2024 Updated: 05/02/2024
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8

Vulnerability Summary

Improper authorization in handler for custom URL scheme issue in "Mercari" App for Android prior to version 5.78.0 allows a remote malicious user to lead a user to access an arbitrary website via the vulnerable App. As a result, the user may become a victim of a phishing attack.

Vulnerable Product Search on Vulmon Subscribe to Product

mercari mercari