CVE-2024-56953

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 27, 2025
Updated: Jan 28, 2025
CWE ID 601
CWE ID 922

Summary

CVE-2024-56953 is a vulnerability affecting Baidu Input Method for iOS version 12.6.13. This issue allows attackers to access a user's information by supplying a specially crafted link. The exact nature of the user information that can be obtained is not clear, but it poses a privacy risk to users of this input method software. Attackers can potentially exploit this vulnerability through social engineering techniques or malicious websites, making it essential for users to exercise caution when clicking on links or visiting unfamiliar websites. Baidu is encouraged to release a patch to address this issue promptly to mitigate the risk to their users.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share