CVE-2023-6540

A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an attacker to craft a payload that could result in the disclosure of sensitive information.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:lenovo:browser_hd:*:*:*:*:*:android:*:*
cpe:2.3:a:lenovo:browser_mobile:*:*:*:*:*:android:*:*

History

21 Nov 2024, 08:44

Type Values Removed Values Added
References () https://iknow.lenovo.com.cn/detail/419251 - Vendor Advisory () https://iknow.lenovo.com.cn/detail/419251 - Vendor Advisory
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 6.5

10 Jan 2024, 20:23

Type Values Removed Values Added
CPE cpe:2.3:a:lenovo:browser_mobile:*:*:*:*:*:android:*:*
cpe:2.3:a:lenovo:browser_hd:*:*:*:*:*:android:*:*
CWE CWE-94 NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Lenovo browser Mobile
Lenovo
Lenovo browser Hd
References () https://iknow.lenovo.com.cn/detail/419251 - () https://iknow.lenovo.com.cn/detail/419251 - Vendor Advisory

03 Jan 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-03 21:15

Updated : 2024-11-21 08:44


NVD link : CVE-2023-6540

Mitre link : CVE-2023-6540

CVE.ORG link : CVE-2023-6540


JSON object : View

Products Affected

lenovo

  • browser_hd
  • browser_mobile
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')

NVD-CWE-noinfo