CVE-2012-2646
Published Jul 25, 2012
Last updated 6 years ago
Overview
- Description
- The Sleipnir Mobile application before 2.1.0 and Sleipnir Mobile Black Edition application before 2.1.0 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application.
- Source
- vultures@jpcert.or.jp
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:fenrir-inc:sleipnir_mobile:*:*:*:*:-:android:*:*", "vulnerable": true, "matchCriteriaId": "D941663E-BEA7-4EA9-A31F-94D7407647E7", "versionEndExcluding": "2.1.0" }, { "criteria": "cpe:2.3:a:fenrir-inc:sleipnir_mobile:*:*:*:*:black:android:*:*", "vulnerable": true, "matchCriteriaId": "8787FDCE-26B6-4D2B-AA82-EF463CDF66FE", "versionEndExcluding": "2.1.0" } ], "operator": "OR" } ] } ]