Improper Knox ID validation logic in notification...
Low severity
Unreviewed
Published
Jun 28, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jun 28, 2023
Published to the GitHub Advisory Database
Jun 28, 2023
Last updated
Apr 4, 2024
Improper Knox ID validation logic in notification framework prior to SMR Jun-2023 Release 1 allows local attackers to read work profile notifications without proper access permission.
References