CVE-2012-4013

Cybozu KUNAI Browser for Remote Service - Exposure of Sensitive Information via WebView JavaScript Execution

Title source: llm
STIX 2.1

Description

The WebView class in the Cybozu KUNAI Browser for Remote Service application beta for Android allows remote attackers to execute arbitrary JavaScript code, and obtain sensitive information, via a crafted application that places this code into a local file associated with a file: URL.

References (3)

Core 3
Core References
Third Party Advisory third-party-advisory x_refsource_jvndb
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000085
Third Party Advisory third-party-advisory x_refsource_jvn
http://jvn.jp/en/jp/JVN03015214/index.html

Scores

EPSS 0.0026
EPSS Percentile 49.4%

Details

CWE
CWE-200
Status published
Products (1)
cybozu/kunai_browser_for_remote_service
Published Sep 14, 2012
Tracked Since Feb 18, 2026