PT-2012-5134 · Mixi · Mixi

Kazuhiko Kusano

·

Publicado

2012-08-17

·

Atualizado

2012-08-20

·

CVE-2012-4007

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions mixi application versions prior to 4.3.0
Description The issue allows remote attackers to read potentially sensitive information in friends' comments via a crafted application that leverages the storage of these comments on an SD card.
Recommendations For versions prior to 4.3.0, update to version 4.3.0 or later to resolve the issue.

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-4007

Produtos afetados

Mixi