OpenSearch Web browser 1.0.4.9 allows Intent Scheme Hijacking.[a link that opens another app in the browser can be manipulated]
References
| Link | Resource |
|---|---|
| https://play.google.com/store/apps/details?id=de.marcel.opensearch&hl=en_US | Product Third Party Advisory |
| https://raw.githubusercontent.com/marcelbohland/OpenSerach-CVE-SVE-reference-/master/CVE-list | Third Party Advisory |
| https://play.google.com/store/apps/details?id=de.marcel.opensearch&hl=en_US | Product Third Party Advisory |
| https://raw.githubusercontent.com/marcelbohland/OpenSerach-CVE-SVE-reference-/master/CVE-list | Third Party Advisory |
Configurations
History
21 Nov 2024, 05:39
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://play.google.com/store/apps/details?id=de.marcel.opensearch&hl=en_US - Product, Third Party Advisory | |
| References | () https://raw.githubusercontent.com/marcelbohland/OpenSerach-CVE-SVE-reference-/master/CVE-list - Third Party Advisory |
Information
Published : 2020-06-08 17:15
Updated : 2024-11-21 05:39
NVD link : CVE-2020-8954
Mitre link : CVE-2020-8954
CVE.ORG link : CVE-2020-8954
JSON object : View
Products Affected
openbrowser_project
- openbrowser
CWE
CWE-276
Incorrect Default Permissions
