CVE-2023-29736
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Jun 1, 2023
Updated: Jan 9, 2025
CWE ID 22
Summary
CVE-2023-29736 is a vulnerability affecting Keyboard Themes 1.275.1.164 for Android. This issue permits unauthorized applications to manipulate the dictionary traversal feature, which in turn allows these apps to overwrite arbitrary files within the keyboard application's internal storage. By exploiting this vulnerability, attackers can execute arbitrary code, leading to potential security risks and data breaches. Users are advised to update the keyboard application to a patched version or consider using alternative, more secure solutions.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.