High severity8.1NVD Advisory· Published Aug 1, 2019· Updated Jun 17, 2026
CVE-2019-9140
CVE-2019-9140
Description
When processing Deeplink scheme, Happypoint mobile app 6.3.19 and earlier versions doesn't check Deeplink URL correctly. This could lead to javascript code execution, url redirection, sensitive information disclosure. An attacker can exploit this issue by enticing an unsuspecting user to open a specific malicious URL.
Affected products
3- cpe:2.3:a:happypointcard:happypoint:6.3.19:*:*:*:*:android:*:*
- Range: <=6.3.19
- Range: 6.3.19
Patches
Vulnerability mechanics
References
1- www.boho.or.kr/krcert/secNoticeView.donvdThird Party Advisory
News mentions
0No linked articles in our index yet.