The Boat Browser application before 4.2 and Boat Browser Mini application before 3.9 for Android do not properly implement the WebView class, which allows attackers to obtain sensitive information via a crafted application.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000111 | third party advisory |
http://jvn.jp/en/jp/JVN69589791/index.html | third party advisory |