CVE-2017-17553

MEDIUM

Dolphin Browser for Android <12.0.2 - Code Injection

Title source: llm
STIX 2.1

Description

The Dolphin Browser for Android 12.0.2 suffers from an insecure parsing implementation of the Intent URI scheme. This vulnerability could allow attackers to abuse this implementation through a malicious Intent URI, in order to invoke private Activities within the Dolphin Browser.

References (1)

Core 1

Scores

CVSS v3 5.3
EPSS 0.0023
EPSS Percentile 46.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Details

Status published
Products (1)
changyou/dolphin 12.0.2
Published Dec 12, 2017
Tracked Since Feb 18, 2026