The Android browser in Android before 2.3.4 allows remote attackers to obtain SD card contents via crafted content:// URIs, related to (1) BrowserActivity.java and (2) BrowserSettings.java in com/android/browser/.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2011-06-09 10:36
Updated : 2024-02-04 17:54
NVD link : CVE-2010-4804
Mitre link : CVE-2010-4804
CVE.ORG link : CVE-2010-4804
JSON object : View
Products Affected
- android
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor