CVE-2023-6540

A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an attacker to craft a payload that could result in the disclosure of sensitive information.
References
Link Resource
https://iknow.lenovo.com.cn/detail/419251 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:lenovo:browser_hd:*:*:*:*:*:android:*:*
cpe:2.3:a:lenovo:browser_mobile:*:*:*:*:*:android:*:*

History

10 Jan 2024, 20:23

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Lenovo browser Hd
Lenovo browser Mobile
Lenovo
Summary
  • (es) Se informó una vulnerabilidad en las aplicaciones Lenovo Browser Mobile y Lenovo Browser HD para Android que podría permitir a un atacante manipular un payload que podría resultar en la divulgación de información confidencial.
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 7.5
CPE cpe:2.3:a:lenovo:browser_hd:*:*:*:*:*:android:*:*
cpe:2.3:a:lenovo:browser_mobile:*:*:*:*:*:android:*:*
References () https://iknow.lenovo.com.cn/detail/419251 - () https://iknow.lenovo.com.cn/detail/419251 - Vendor Advisory

03 Jan 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-03 21:15

Updated : 2024-01-10 20:23


NVD link : CVE-2023-6540

Mitre link : CVE-2023-6540

CVE.ORG link : CVE-2023-6540


JSON object : View

Products Affected

lenovo

  • browser_mobile
  • browser_hd
CWE
NVD-CWE-noinfo CWE-94

Improper Control of Generation of Code ('Code Injection')