An issue was discovered in the Boomerang Parental Control application through 13.83 for Android. The child can use Safe Mode to remove all restrictions temporarily or uninstall the application without the parents noticing.
References
Link | Resource |
---|---|
https://seclists.org/fulldisclosure/2023/Jul/12 | Mailing List Third Party Advisory |
https://sec-consult.com/blog/detail/the-hidden-costs-of-parental-control-apps/ | Third Party Advisory |
https://useboomerang.com/ | Product |
Configurations
History
09 Nov 2023, 21:55
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.1 |
CWE | CWE-862 | |
CPE | cpe:2.3:a:nationaledtech:boomerang:*:*:*:*:*:android:*:* | |
References | (MISC) https://useboomerang.com/ - Product | |
References | (MISC) https://sec-consult.com/blog/detail/the-hidden-costs-of-parental-control-apps/ - Third Party Advisory | |
References | (MISC) https://seclists.org/fulldisclosure/2023/Jul/12 - Mailing List, Third Party Advisory | |
First Time |
Nationaledtech
Nationaledtech boomerang |
03 Nov 2023, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-11-03 04:15
Updated : 2023-11-09 21:55
NVD link : CVE-2023-36621
Mitre link : CVE-2023-36621
JSON object : View
Products Affected
nationaledtech
- boomerang
CWE
CWE-862
Missing Authorization