CVE-2023-38846
https://notcve.org/view.php?id=CVE-2023-38846
An issue in Marbre Lapin Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. Un problema en Marbre Lapin Line v.13.6.1 permite a un atacante remoto obtener información confidencial a través de una solicitud GET manipulada. • https://github.com/syz913/CVE-reports/blob/main/CVE-2023-38846.md https://liff.line.me/1657925980-KmmGkje5 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2023-38847
https://notcve.org/view.php?id=CVE-2023-38847
An issue in CHRISTINA JAPAN Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. Un problema en CHRISTINA JAPAN Line v.13.6.1 permite a un atacante remoto obtener información confidencial a través de una solicitud GET manipulada. • https://github.com/syz913/CVE-reports/blob/main/CVE-2023-38847.md https://liff.line.me/1657631315-oX5J26Ak • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2023-38848
https://notcve.org/view.php?id=CVE-2023-38848
An issue in rmc R Beauty CLINIC Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. Un problema en rmc R Beauty CLINIC Line v.13.6.1 permite a un atacante remoto obtener información confidencial a través de una solicitud GET manipulada. • https://github.com/syz913/CVE-reports/blob/main/CVE-2023-38848.md https://liff.line.me/1657640647-Wk2xYj38 • CWE-284: Improper Access Control •
CVE-2023-38849
https://notcve.org/view.php?id=CVE-2023-38849
An issue in tire-sales Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request. Un problema en Tire-Sales Line v.13.6.1 permite a un atacante remoto obtener información confidencial a través de una solicitud GET manipulada. • https://github.com/syz913/CVE-reports/blob/main/CVE-2023-38849.md https://liff.line.me/1657203739-yvGg5PjN • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2023-5554
https://notcve.org/view.php?id=CVE-2023-5554
Lack of TLS certificate verification in log transmission of a financial module within LINE Client for iOS prior to 13.16.0. Falta de verificación del certificado TLS en la transmisión de registros de un módulo financiero dentro de LINE Client para iOS anterior a 13.16.0. • https://hackerone.com/reports/2106827 • CWE-295: Improper Certificate Validation •