Dropbox SDK for Android CVE-2014-8889 Security Bypass Vulnerability
BID:73035
CVE-2014-8889 |Info
Dropbox SDK for Android CVE-2014-8889 Security Bypass Vulnerability
| Bugtraq ID: | 73035 |
| Class: | Configuration Error |
| CVE: |
CVE-2014-8889 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 11 2015 12:00AM |
| Updated: | Mar 11 2015 12:00AM |
| Credit: | IBM X-Force Application Security Research Team |
| Vulnerable: |
Dropbox Dropbox SDK for Android 1.6.1 Dropbox Dropbox SDK for Android 1.5.4 |
| Not Vulnerable: |
Dropbox Dropbox SDK for Android 1.6.2 |
Discussion
Dropbox SDK for Android CVE-2014-8889 Security Bypass Vulnerability
Dropbox SDK for Android is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass nonce protection and perform unauthorized actions. This may lead to further attacks.
Dropbox SDK for Android is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass nonce protection and perform unauthorized actions. This may lead to further attacks.
References
Dropbox SDK for Android CVE-2014-8889 Security Bypass Vulnerability
References:
References: