The Tencent QQPhoto (com.tencent.qqphoto) application 0.97 for Android does not properly protect data, which allows remote attackers to read or modify contact information and a password hash via a crafted application.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://www4.comp.polyu.edu.hk/~appsec/bugs/CVE-2011-4867-vulnerability-in-QQPhoto.html - |
Information
Published : 2012-01-25 04:03
Updated : 2024-11-21 01:33
NVD link : CVE-2011-4867
Mitre link : CVE-2011-4867
CVE.ORG link : CVE-2011-4867
JSON object : View
Products Affected
android
- android
tencent
- qqpphoto
CWE
CWE-264
Permissions, Privileges, and Access Controls