2024-12-08 03:06:42 +00:00

136 lines
4.1 KiB
JSON

{
"id": "CVE-2012-2635",
"sourceIdentifier": "vultures@jpcert.or.jp",
"published": "2012-06-15T19:55:01.687",
"lastModified": "2024-11-21T01:39:19.997",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Dolphin Browser HD application before 7.6 and Dolphin for Pad application before 1.0.1 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application."
},
{
"lang": "es",
"value": "La aplicaci\u00f3n Dolphin Browser HD anteriores a 7.6 y Dolphin para la aplicaci\u00f3n Pad anteriores a 1.0.1 de Android no implementa apropiadamente la clase WebView, lo que permite a atacantes remotos obtener informaci\u00f3n confidencial a trav\u00e9s de una aplicaci\u00f3n modificada."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N",
"baseScore": 4.3,
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-200"
}
]
}
],
"configurations": [
{
"operator": "AND",
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:dolphin-browser:dolphin_browser_hd:*:*:*:*:*:*:*:*",
"versionEndIncluding": "7.4.0",
"matchCriteriaId": "B1E66091-2474-4DC7-8C1F-54C3F145AC57"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:dolphin-browser:dolphin_browser_hd:6.2.0:*:*:*:*:*:*:*",
"matchCriteriaId": "E4C08F71-AB4A-4570-B5BA-EBD2CC4BCAB4"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:dolphin-browser:dolphin_browser_hd:7.2.1:*:*:*:*:*:*:*",
"matchCriteriaId": "5D9BB68F-7524-4473-8BFF-695C7A82150F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:dolphin-browser:dolphin_browser_hd:7.3.0:*:*:*:*:*:*:*",
"matchCriteriaId": "88E37571-026F-4881-9EB1-704745D3FCF3"
}
]
},
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:o:google:android:*:*:*:*:*:*:*:*",
"matchCriteriaId": "8255F035-04C8-4158-B301-82101711939C"
}
]
}
]
},
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:dolphin-browser:dolphin_for_pad:*:beta:*:*:*:*:*:*",
"versionEndIncluding": "1.0",
"matchCriteriaId": "AB06260B-A5A4-4DBC-BF10-01A95D41C554"
}
]
}
]
}
],
"references": [
{
"url": "http://jvn.jp/en/jp/JVN90751882/index.html",
"source": "vultures@jpcert.or.jp"
},
{
"url": "http://jvndb.jvn.jp/jvndb/JVNDB-2012-000057",
"source": "vultures@jpcert.or.jp"
},
{
"url": "http://jvn.jp/en/jp/JVN90751882/index.html",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://jvndb.jvn.jp/jvndb/JVNDB-2012-000057",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}