Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Cory Pruce

Researcher fromCarnegie Mellon University
#45828of 53,632
5.5Total CVSS
Vulnerabilities · 1
PT-2016-5727
5.5
2016-09-11
Google · Android · CVE-2016-3897
**Name of the Vulnerable Software and Affected Versions** Android versions 4.x through 4.4.3 Android versions 5.0.x through 5.0.1 Android versions 5.1.x through 5.1.0 Android versions 6.x before 2016-09-01 **Description** The issue allows attackers to obtain sensitive information via a crafted application. This is due to the WifiEnterpriseConfig class including a password in the return value of a `toString` method call. **Recommendations** For Android versions 4.x through 4.4.3, update to version 4.4.4 or later. For Android versions 5.0.x through 5.0.1, update to version 5.0.2 or later. For Android versions 5.1.x through 5.1.0, update to version 5.1.1 or later. For Android versions 6.x before 2016-09-01, update to a version released on or after 2016-09-01.