Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tetsuya Aoyama

#49664of 53,633
5Total CVSS
Vulnerabilities · 1
PT-2012-2502
5.0
2012-03-17
Twicca · Twicca · CVE-2012-0326
**Name of the Vulnerable Software and Affected Versions** twicca application versions 0.7.0 through 0.9.30 **Description** The issue concerns the twicca application's failure to properly restrict network privileges, allowing remote attackers to read media files on an SD card by using a crafted application. **Recommendations** For twicca application versions 0.7.0 through 0.9.30, consider restricting network access to sensitive data until a fix is available. As a temporary workaround, restrict the use of network privileges to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.