PT-2010-1930 · Symantec · Symantec Norton Mobile Security
Publicado
2010-11-15
·
Atualizado
2017-08-17
·
CVE-2010-0113
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Symantec Norton Mobile Security application version 1.0 Beta for Android
Description
The issue allows user-assisted remote attackers to obtain potentially sensitive information, including wipe/lock credentials, by leveraging the ability of a separate crafted application to read device logs where setup details are recorded.
Recommendations
For Symantec Norton Mobile Security application version 1.0 Beta for Android, consider restricting access to device logs to minimize the risk of sensitive information exposure until a fix is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Symantec Norton Mobile Security