Lucene search

K
cve[email protected]CVE-2010-4804
HistoryJun 09, 2011 - 10:36 a.m.

CVE-2010-4804

2011-06-0910:36:27
CWE-200
web.nvd.nist.gov
19
android
browser
vulnerability
cve-2010-4804
security
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.7 Medium

AI Score

Confidence

Low

0.097 Low

EPSS

Percentile

94.8%

The Android browser in Android before 2.3.4 allows remote attackers to obtain SD card contents via crafted content:// URIs, related to (1) BrowserActivity.java and (2) BrowserSettings.java in com/android/browser/.

Affected configurations

NVD
Node
googleandroidRange2.3.3
OR
googleandroidMatch1.5
OR
googleandroidMatch1.6
OR
googleandroidMatch2.1
OR
googleandroidMatch2.2
OR
googleandroidMatch2.2rev1
OR
googleandroidMatch2.2.1
OR
googleandroidMatch2.2.2
OR
googleandroidMatch2.3rev1

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.7 Medium

AI Score

Confidence

Low

0.097 Low

EPSS

Percentile

94.8%