4.3
CVE-2013-3642
- EPSS 0.26%
- Published 17.06.2013 03:29:45
- Last modified 11.04.2025 00:51:21
- Source vultures@jpcert.or.jp
- Teams watchlist Login
- Open Login
The Angel Browser application 1.47b and earlier for Android 1.6 through 2.1, 1.62b and earlier for Android 2.2 through 2.3.4, 1.68b and earlier for Android 3.0 through 4.0.3, and 1.76b and earlier for Android 4.1 through 4.2 does not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application.
Data is provided by the National Vulnerability Database (NVD)
Adgjm ≫ Angel Browser Version <= 1.47b
Adgjm ≫ Angel Browser Version <= 1.62b
Google ≫ Android Version2.2
Google ≫ Android Version2.2 Updaterev1
Google ≫ Android Version2.2.1
Google ≫ Android Version2.2.2
Google ≫ Android Version2.2.3
Google ≫ Android Version2.3
Google ≫ Android Version2.3.1
Google ≫ Android Version2.3.2
Google ≫ Android Version2.3.3
Google ≫ Android Version2.3.4
Google ≫ Android Version2.2 Updaterev1
Google ≫ Android Version2.2.1
Google ≫ Android Version2.2.2
Google ≫ Android Version2.2.3
Google ≫ Android Version2.3
Google ≫ Android Version2.3.1
Google ≫ Android Version2.3.2
Google ≫ Android Version2.3.3
Google ≫ Android Version2.3.4
Adgjm ≫ Angel Browser Version <= 1.68b
Google ≫ Android Version3.0
Google ≫ Android Version3.1
Google ≫ Android Version3.2
Google ≫ Android Version3.2.1
Google ≫ Android Version3.2.2
Google ≫ Android Version3.2.4
Google ≫ Android Version3.2.6
Google ≫ Android Version4.0
Google ≫ Android Version4.0.1
Google ≫ Android Version4.0.2
Google ≫ Android Version4.0.3
Google ≫ Android Version3.1
Google ≫ Android Version3.2
Google ≫ Android Version3.2.1
Google ≫ Android Version3.2.2
Google ≫ Android Version3.2.4
Google ≫ Android Version3.2.6
Google ≫ Android Version4.0
Google ≫ Android Version4.0.1
Google ≫ Android Version4.0.2
Google ≫ Android Version4.0.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.26% | 0.462 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.