MEDIUM
The La Banque Postale application before 3.2.6 for Android does not prevent the launching of an activity by a component of another application, which allows attackers to obtain sensitive cached banking information via crafted intents, as demonstrated by the drozer framework
Published Sep 2, 2014
4.3
MEDIUMCVSS 2.0
EPSS 1.00%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.