VYPR
Medium severity5.3NVD Advisory· Published Jun 9, 2021· Updated Jun 17, 2026

CVE-2021-20728

CVE-2021-20728

Description

Improper access control vulnerability in goo blog App for Android ver.1.2.25 and earlier and for iOS ver.1.3.3 and earlier allows a remote attacker to lead a user to access an arbitrary website via the vulnerable App.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Nttr/Goo Blog2 versions
    cpe:2.3:a:nttr:goo_blog:*:*:*:*:*:android:*:*+ 1 more
    • cpe:2.3:a:nttr:goo_blog:*:*:*:*:*:android:*:*range: <=1.2.25
    • cpe:2.3:a:nttr:goo_blog:*:*:*:*:*:iphone_os:*:*range: <=1.3.3
  • Range: <=1.2.25 (Android), <=1.3.3 (iOS)
  • NTT Resonant Incorporated/goo blog Appv5
    Range: goo blog App for Android ver.1.2.25 and earlier, and goo blog App for iOS ver.1.3.3 and earlier

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.