Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2013-3647

EPSS 0.40% · P60
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-3647

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The WebView class in the Cybozu Live application before 2.0.1 for Android allows attackers to execute arbitrary JavaScript code, and obtain sensitive information, via a crafted application that places this code into a local file associated with a file: URL. NOTE: this vulnerability exists because of a CVE-2012-4009 regression.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Android Cybozu Live应用程序WebView类安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cybozu Live for Android是日本才望子(Cybozu)公司的协同工作平台Cybozu Live的Android客户端。该客户端允许用户和工作组中的其他同事协同办公,可以查看更新、发表评论、发布图片等。 Android的Cybozu Live应用程序2.0.1之前的版本中的WebView类中存在漏洞。攻击者可通过放置此代码到与file: URL相关联的本地文件的特制的应用程序,利用该漏洞执行任意JavaScript代码,获得敏感信息。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-3647

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-3647

登录查看更多情报信息。

Same Patch Batch · n/a · 2013-06-18 · 46 CVEs total

CVE-2013-2468Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2471Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2473Oracle Java SE JRE组件未明安全漏洞
CVE-2013-3644JustSystems Ichitaro 任意代码执行漏洞
CVE-2013-3646Android Cybozu Live应用程序安全漏洞
CVE-2013-3927Siemens COMOS 客户端库安全漏洞
CVE-2013-1203Cisco ASA CX Context-Aware Security Software 输入验证漏洞
CVE-2013-4616Apple iOS 信任管理漏洞
CVE-2013-3744Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2469Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2470Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2467Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2466Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2465Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2464Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2463Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2462Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2461Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2460Oracle Java SE JRE组件未明安全漏洞
CVE-2013-2459Oracle Java SE JRE组件未明安全漏洞

Showing top 20 of 46 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2013-3647

No comments yet


Leave a comment