Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xm93-639c-r743

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Opera Mini for Android allows attackers to bypass intended restrictions on .apk file download/installation via an RTLO (aka Right to Left Override) approach, as demonstrated by misinterpretation of malicious%E2%80%AEtxt.apk as maliciouskpa.txt. This affects 44.1.2254.142553, 44.1.2254.142659, and 44.1.2254.143214.

Opera Mini for Android allows attackers to bypass intended restrictions on .apk file download/installation via an RTLO (aka Right to Left Override) approach, as demonstrated by misinterpretation of malicious%E2%80%AEtxt.apk as maliciouskpa.txt. This affects 44.1.2254.142553, 44.1.2254.142659, and 44.1.2254.143214.

EPSS

Процентиль: 42%
0.00203
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 9.8
nvd
больше 6 лет назад

Opera Mini for Android allows attackers to bypass intended restrictions on .apk file download/installation via an RTLO (aka Right to Left Override) approach, as demonstrated by misinterpretation of malicious%E2%80%AEtxt.apk as maliciouskpa.txt. This affects 44.1.2254.142553, 44.1.2254.142659, and 44.1.2254.143214.

EPSS

Процентиль: 42%
0.00203
Низкий

Дефекты

CWE-20