The mixi application before 4.3.0 for Android allows remote attackers to read potentially sensitive information in friends' comments via a crafted application that leverages the storage of these comments on an SD card.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2012-08-17 13:55
Updated : 2012-08-19 21:00
NVD link : CVE-2012-4007
Mitre link : CVE-2012-4007
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
- android
mixi
- mixi