Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 PyPI

Withdrawn Advisory: Mobile Security Framework (MobSF) Vulnerable to Insecure Permissions

GHSA-cc8j-6phr-jv9x · CVE-2023-42261 · PYSEC-2023-310

Published · Modified

Description

Withdrawn Advisory

This advisory has been withdrawn because the vendor's position is that authentication is intentionally not implemented because the product is not intended for an untrusted network environment. Use cases requiring authentication could, for example, use a reverse proxy server.

Original Description

Mobile Security Framework (MobSF) <=v3.7.8 Beta is vulnerable to Insecure Permissions.

Ready to move

Start Securing

Free, no credit card | First findings in minutes