Lucene search

K
prionPRIOn knowledge basePRION:CVE-2011-2344
HistoryJul 08, 2011 - 5:55 p.m.

Design/Logic Flaw

2011-07-0817:55:00
PRIOn knowledge base
www.prio-n.com
3

7.5 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

48.2%

Android Picasa in Android 3.0 and 2.x through 2.3.4 uses a cleartext HTTP session when transmitting the authToken obtained from ClientLogin, which allows remote attackers to gain privileges and access private pictures and web albums by sniffing the token from connections with picasaweb.google.com.

7.5 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

48.2%

Related for PRION:CVE-2011-2344