Vulnerability CVE-2023-28153


Published: 2023-05-29

Description:
An issue was discovered in the Kiddoware Kids Place Parental Control application before 3.8.50 for Android. The child can remove all restrictions temporarily without the parents noticing by rebooting into Android Safe Mode and disabling the "Display over other apps" permission.

See advisories in our WLB2 database:
Topic
Author
Date
High
Kiddoware Kids Place Parental Control Android App 3.8.49 XSS / CSRF / File Upload
Fabian Densborn
21.05.2023

 References:
https://sec-consult.com/vulnerability-lab/advisory/multiple-vulnerabilities-in-kiddoware-kids-place-parental-control-android-app/

Copyright 2024, cxsecurity.com

 

Back to Top