CVE-2024-46960
CVSS 3.1 Score 8.8 of 10 (high)
Details
Summary
CVE-2024-46960 is a vulnerability affecting the ASD com.rocks.video.downloader app, also known as HD Video Downloader All Format, for Android. This issue allows an attacker to execute arbitrary JavaScript code through the com.rocks.video.downloader.MainBrowserActivity component, which could potentially lead to unauthorized access or data theft. Users are advised to update the app to the latest version to mitigate this risk. The vulnerability could be exploited by an attacker simply by luring a user to visit a malicious website or sending a malicious link via email or messaging apps. The exact method of exploitation is not yet clear, but the potential consequences could be severe.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.