FlickWnn for Android CVE-2013-2300 Information Disclosure Vulnerability
BID:58777
Info
FlickWnn for Android CVE-2013-2300 Information Disclosure Vulnerability
| Bugtraq ID: | 58777 |
| Class: | Design Error |
| CVE: |
CVE-2013-2300 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 26 2013 12:00AM |
| Updated: | Mar 26 2013 12:00AM |
| Credit: | Gaku Mochizuki of Mitsui Bussan Secure Directions, Inc |
| Vulnerable: |
PM9 FlickWnn 2.02 |
| Not Vulnerable: |
PM9 FlickWnn 2.03 |
Discussion
FlickWnn for Android CVE-2013-2300 Information Disclosure Vulnerability
FlickWnn for Android is prone to an information-disclosure vulnerability.
Successful exploits allow an attacker to gain access to sensitive information. Information obtained may aid in further attacks.
FlickWnn for Android 2.02 and prior are vulnerable.
FlickWnn for Android is prone to an information-disclosure vulnerability.
Successful exploits allow an attacker to gain access to sensitive information. Information obtained may aid in further attacks.
FlickWnn for Android 2.02 and prior are vulnerable.
Exploit / POC
FlickWnn for Android CVE-2013-2300 Information Disclosure Vulnerability
An attacker can exploit this issue by enticing an unsuspecting victim to open a malicious Android application.
An attacker can exploit this issue by enticing an unsuspecting victim to open a malicious Android application.
Solution / Fix
FlickWnn for Android CVE-2013-2300 Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
FlickWnn for Android CVE-2013-2300 Information Disclosure Vulnerability
References:
References:
- FlickWnn Download Page (Google )
- OpenWnn/Flick support vulnerable to information disclosure (JPCERT )