The ApowerManager application through 3.1.7 for Android allows remote attackers to cause a denial of service via many simultaneous /?Key=PhoneRequestAuthorization requests.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9601
Reference (s):
- EXPLOIT-DB:46380
- URL: https://www.exploit-db.com/exploits/46380
- https://www.youtube.com/watch?v=9vD8GnKqDME