The Sleipnir Mobile application 2.2.0 and earlier and Sleipnir Mobile Black Edition application 2.2.0 and earlier for Android allow remote attackers to execute arbitrary Java methods, and obtain sensitive information or execute arbitrary commands, via a crafted web site.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
21 Nov 2024, 01:39
Type | Values Removed | Values Added |
---|---|---|
References | () http://jvn.jp/en/jp/JVN99730704/index.html - | |
References | () http://jvndb.jvn.jp/jvndb/JVNDB-2012-000075 - | |
References | () https://play.google.com/store/apps/details?id=jp.co.fenrir.android.sleipnir - | |
References | () https://play.google.com/store/apps/details?id=jp.co.fenrir.android.sleipnir_black - |
Information
Published : 2012-08-08 18:55
Updated : 2024-11-21 01:39
NVD link : CVE-2012-2649
Mitre link : CVE-2012-2649
CVE.ORG link : CVE-2012-2649
JSON object : View
Products Affected
fenrir-inc
- sleipnir_mobile
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')