mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
19 lines
893 B
Markdown
19 lines
893 B
Markdown
### [CVE-2011-1717](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1717)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Skype for Android stores sensitive user data without encryption in sqlite3 databases that have weak permissions, which allows local applications to read user IDs, contacts, phone numbers, date of birth, instant message logs, and other private information.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://www.androidpolice.com/2011/04/14/exclusive-vulnerability-in-skype-for-android-is-exposing-your-name-phone-number-chat-logs-and-a-lot-more/
|
|
- http://www.theregister.co.uk/2011/04/15/skype_for_android_vulnerable/
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|