Dropbox SDK for Android before 1.6.2 might allow remote attackers to obtain sensitive information via crafted malware or via a drive-by download attack.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/130767/Dropbox-SDK-For-Android-Remote-Exploitation.html | Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2015/Mar/61 | Mailing List Third Party Advisory |
http://www.securityfocus.com/archive/1/534843/100/1500/threaded | |
http://www.securityfocus.com/bid/73035 | Third Party Advisory VDB Entry |
https://securityintelligence.com/droppedin-remotely-exploitable-vulnerability-in-the-dropbox-sdk-for-android/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2017-09-26 01:29
Updated : 2024-02-04 19:29
NVD link : CVE-2014-8889
Mitre link : CVE-2014-8889
CVE.ORG link : CVE-2014-8889
JSON object : View
Products Affected
dropbox
- dropbox_sdk
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor