CVE-2014-3501

Apache Cordova Android before 3.5.1 allows remote attackers to bypass the HTTP whitelist and connect to arbitrary servers by using JavaScript to open WebSocket connections through WebView.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:cordova:3.5.0:*:*:*:*:android:*:*

Information

Published : 2014-11-15 13:59

Updated : 2014-11-17 06:03


NVD link : CVE-2014-3501

Mitre link : CVE-2014-3501


JSON object : View

CWE
CWE-254

7PK - Security Features

Advertisement

dedicated server usa

Products Affected

apache

  • cordova