Home
MEDIUM: 4.7 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:NDefault status
unknown
5.246.0 and below
affected
Description
Successful exploitation of the vulnerability could allow an unauthenticated attacker to gain access to a victim’s Sync account data such as account credentials and email protection information.
Problem types
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
Product status
5.246.0 and below
Credits
Leng Kang Hao
References
www.csa.gov.sg/alerts-and-advisories/alerts/al-2025-097/
tuxplorer.com/posts/dont-leave-me-outdated/