cve/2015/CVE-2015-1835.md
2024-06-18 02:51:15 +02:00

814 B

CVE-2015-1835

Description

Apache Cordova Android before 3.7.2 and 4.x before 4.0.2, when an application does not set explicit values in config.xml, allows remote attackers to modify undefined secondary configuration variables (preferences) via a crafted intent: URL.

POC

Reference

Github

No PoCs found on GitHub currently.