Adobe PhoneGap Push Plugin CVE-2018-4943 Security Bypass Vulnerability
BID:103710
CVE-2018-4943 |Info
Adobe PhoneGap Push Plugin CVE-2018-4943 Security Bypass Vulnerability
| Bugtraq ID: | 103710 |
| Class: | Unknown |
| CVE: |
CVE-2018-4943 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 10 2018 12:00AM |
| Updated: | Apr 10 2018 12:00AM |
| Credit: | Juho Nurminen of 2NS - Second Nature Security Oy |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Adobe PhoneGap Push Plugin CVE-2018-4943 Security Bypass Vulnerability
Adobe PhoneGap Push Plugin is prone to an security-bypass vulnerability.
An attacker can exploit this issue to bypass certain same-origin policy restrictions and obtain sensitive information; this may aid in launching further attacks.
Adobe PhoneGap Push Plugin 1.8.0 and prior versions are vulnerable.
Adobe PhoneGap Push Plugin is prone to an security-bypass vulnerability.
An attacker can exploit this issue to bypass certain same-origin policy restrictions and obtain sensitive information; this may aid in launching further attacks.
Adobe PhoneGap Push Plugin 1.8.0 and prior versions are vulnerable.
Exploit / POC
Adobe PhoneGap Push Plugin CVE-2018-4943 Security Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: vhttp://
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: vhttp://
Solution / Fix
Adobe PhoneGap Push Plugin CVE-2018-4943 Security Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Adobe PhoneGap Push Plugin CVE-2018-4943 Security Bypass Vulnerability
References:
References: