Описание
The Boat Browser application before 4.2 and Boat Browser Mini application before 3.9 for Android do not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application.
Уязвимые конфигурации
Конфигурация 1Версия до 4.1 (включая)
Одно из
cpe:2.3:a:boatmob:boat_browser:*:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:2.0:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:2.1:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:2.2:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:2.3:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:2.4.1:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:2.5.1:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:2.6:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:3.0:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:3.1:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:3.2.1:*:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser:3.3:*:*:*:*:android:*:*
Конфигурация 2Версия до 3.8 (включая)
Одно из
cpe:2.3:a:boatmob:boat_browser_mini:*:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:2.6.1:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:2.7:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:2.7.1:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:2.8:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:2.9:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:2.9.1:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:2.9.2:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.0.1:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.0.2:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.1:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.2:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.3:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.4:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.5:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.6:-:*:*:*:android:*:*
cpe:2.3:a:boatmob:boat_browser_mini:3.7:-:*:*:*:android:*:*
EPSS
Процентиль: 20%
0.00064
Низкий
2.1 Low
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
больше 3 лет назад
The Boat Browser application before 4.2 and Boat Browser Mini application before 3.9 for Android do not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application.
EPSS
Процентиль: 20%
0.00064
Низкий
2.1 Low
CVSS2
Дефекты
CWE-264