Loading HuntDB...

Bot setting information leakage in OpenChat room

Low
L
LY Corporation
Submitted None

Team Summary

Official summary from LY Corporation

Due to the bug in the authority verification process, it could be possible for the non-admin users to see settings details for Line OpenChat Admin Bot, such as saved scheduled messages and auto-responses.

Reported by akichia

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Improper Access Control - Generic