Insecure permissions in Splashin iOS v2.0 allow unauthorized attackers to access location data for specific users.
References
| Link | Resource |
|---|---|
| http://splashin.com | Not Applicable |
| https://carterlasalle.github.io/splashin-cve-2025/splashin-1.pdf | Exploit Third Party Advisory |
Configurations
History
No history.
Information
Published : 2025-07-18 17:15
Updated : 2025-10-17 18:44
NVD link : CVE-2025-45157
Mitre link : CVE-2025-45157
CVE.ORG link : CVE-2025-45157
JSON object : View
Products Affected
splashin
- splashin
CWE
CWE-284
Improper Access Control
