CVE-2011-4865

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
25/01/2012
Last modified:
29/02/2012

Description

The Tencent WBlog (com.tencent.WBlog) 3.3.1 and MicroBlogPad 1.4.0 applications for Android do not properly protect data, which allows remote attackers to read or modify message drafts and search keywords via a crafted application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tencent:microblogpad:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:tencent:wblog:3.3.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:*:*:*:*:*:*:*:*