MEDIUM
The Sleipnir Mobile application 2.8.0 and earlier and Sleipnir Mobile Black Edition application 2.8.0 and earlier for Android allow remote attackers to load arbitrary Extension APIs, and trigger downloads or obtain sensitive HTTP response-body information, via a crafted web page
Published Apr 16, 2013
5.8
MEDIUMCVSS 2.0
EPSS 0.88%
Description
The Sleipnir Mobile application 2.8.0 and earlier and Sleipnir Mobile Black Edition application 2.8.0 and earlier for Android allow remote attackers to load arbitrary Extension APIs, and trigger downloads or obtain sensitive HTTP response-body information, via a crafted web page.
Affected products
No data.
Configuration 1
AND
OR
- ≤ 2.8.0
- 1.0.0
- 1.0.0
- 1.0.0
- 1.1.0
- 1.2.0
- 1.3.0
- 1.4.0
- 1.5.0
- 1.5.1
- 1.6.0
- 1.7.0
- 1.7.1
- 2.0.0
- 2.0.1
- 2.0.2
- 2.0.3
- 2.0.4
- 2.1.0
- 2.2.0
- 2.2.1
- 2.2.2
- 2.2.3
- 2.3.0
- 2.4.0
- 2.4.1
- 2.5.0
- 2.5.1
- 2.6.0
- 2.7.0
Configuration 2
AND
OR
- ≤ 2.8.0
- 1.0.0
- 1.0.0
- 1.0.0
- 1.1.0
- 1.2.0
- 1.3.0
- 1.4.0
- 1.5.0
- 1.5.1
- 1.6.0
- 1.7.0
- 1.7.1
- 2.0.0
- 2.0.1
- 2.0.2
- 2.0.3
- 2.0.4
- 2.1.0
- 2.2.0
- 2.2.1
- 2.2.2
- 2.2.3
- 2.3.0
- 2.4.0
- 2.4.1
- 2.5.0
- 2.5.1
- 2.6.0
- 2.7.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (2)
- http://jvn.jp/en/jp/JVN02895867/index.html third-party-advisoryx_refsource_JVN
- http://jvndb.jvn.jp/jvndb/JVNDB-2013-000033 third-party-advisoryx_refsource_JVNDB
| Link | Providers | Tags |
|---|---|---|
| http://jvn.jp/en/jp/JVN02895867/index.html | third-party-advisoryx_refsource_JVN | |
| http://jvndb.jvn.jp/jvndb/JVNDB-2013-000033 | third-party-advisoryx_refsource_JVNDB |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner jpcert
Published Apr 16, 2013
Updated Sep 16, 2024
Reserved Mar 4, 2013
Link CVE-2013-2304
CISA Vulnrichment
Updated n/a