PT-2021-17502 · Genymotion · Genymotion Desktop
Eybisi
·
Published
2021-02-22
·
Updated
2024-08-03
·
CVE-2021-27549
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Genymotion Desktop versions 3.2.0 and earlier
Description
The issue concerns the leakage of the host's clipboard data to the Android application by default. It is worth noting that the vendor considers this behavior as intended and configurable through the Settings > Device screen.
Recommendations
For Genymotion Desktop versions 3.2.0 and earlier, consider changing the settings through the Settings > Device screen to alter the default behavior and prevent the host's clipboard data from being leaked to the Android application.
Exploit
Fix
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Genymotion Desktop