Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rggc-4jrg-r8g6

Опубликовано: 28 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

The YI Smart Kami Vision com.kamivision.yismart application through 1.0.0_20231219 for Android allows a remote attacker to execute arbitrary JavaScript code via an implicit intent to the com.ants360.yicamera.activity.WebViewActivity component.

The YI Smart Kami Vision com.kamivision.yismart application through 1.0.0_20231219 for Android allows a remote attacker to execute arbitrary JavaScript code via an implicit intent to the com.ants360.yicamera.activity.WebViewActivity component.

EPSS

Процентиль: 78%
0.0116
Низкий

8.4 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 8.4
nvd
почти 2 года назад

The YI Smart Kami Vision com.kamivision.yismart application through 1.0.0_20231219 for Android allows a remote attacker to execute arbitrary JavaScript code via an implicit intent to the com.ants360.yicamera.activity.WebViewActivity component.

EPSS

Процентиль: 78%
0.0116
Низкий

8.4 High

CVSS3

Дефекты

CWE-94