Sleipnir Mobile for Android CVE-2013-2317 Address Bar Spoofing Vulnerability
BID:60200
Info
Sleipnir Mobile for Android CVE-2013-2317 Address Bar Spoofing Vulnerability
| Bugtraq ID: | 60200 |
| Class: | Design Error |
| CVE: |
CVE-2013-2317 |
| Remote: | Yes |
| Local: | No |
| Published: | May 29 2013 12:00AM |
| Updated: | May 29 2013 12:00AM |
| Credit: | Keita Haga |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Sleipnir Mobile for Android CVE-2013-2317 Address Bar Spoofing Vulnerability
Sleipnir Mobile for Android is prone to an address bar spoofing vulnerability.
Attackers may exploit this vulnerability through a malicious page to spoof the contents and origin of a page the victim may trust. Attackers may find this issue useful in phishing or other attacks that rely on content spoofing.
The following versions are affected:
Sleipnir Mobile for Android versions prior to 2.10.0
Sleipnir Mobile Black Edition for Android versions prior to 2.10.0
Sleipnir Mobile for Android is prone to an address bar spoofing vulnerability.
Attackers may exploit this vulnerability through a malicious page to spoof the contents and origin of a page the victim may trust. Attackers may find this issue useful in phishing or other attacks that rely on content spoofing.
The following versions are affected:
Sleipnir Mobile for Android versions prior to 2.10.0
Sleipnir Mobile Black Edition for Android versions prior to 2.10.0
Exploit / POC
Sleipnir Mobile for Android CVE-2013-2317 Address Bar Spoofing Vulnerability
Attackers can exploit this issue by enticing a user to visit a malicious website.
Attackers can exploit this issue by enticing a user to visit a malicious website.
Solution / Fix
Sleipnir Mobile for Android CVE-2013-2317 Address Bar Spoofing Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Sleipnir Mobile for Android CVE-2013-2317 Address Bar Spoofing Vulnerability
References:
References: