Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In imo.im 2022.11.1051, a path traversal vulnerability delivered via an unsanitized deeplink can force the application to write a file into the application's data directory. This may allow an attacker to save a shared library under a special directory which the app uses to dynamically load modules. Loading the library can lead to arbitrary code execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
imo 路径遍历漏洞
Vulnerability Description
imo是免费视频通话和聊天软件。 imo 2022.11.1051版本存在安全漏洞,该漏洞源于存在路径遍历漏洞,可以强制应用程序将文件写入应用程序的数据目录,可能允许攻击者将共享库保存在应用程序用于动态加载模块的特殊目录下,会导致任意代码执行。
CVSS Information
N/A
Vulnerability Type
N/A