CVE-2014-0073
Last modified
CVE-2014-0073 is a vulnerability of currently unknown severity. The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.. EPSS estimates a 8.13% chance of exploitation in the next 30 days.
Description
The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apache | Cordova In-App-Browser | <= 0.3.1 |
| Apache | Cordova | >= 2.6.0, <= 2.9.0 |
References
- http://d3adend.org/blog/?p=403Issue Tracking, Third Party Advisory
- http://seclists.org/fulldisclosure/2014/Mar/30Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/65959Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/91560Issue Tracking, Third Party Advisory, VDB Entry
- https://github.com/apache/cordova-plugin-inappbrowser/commit/26702cb0720c5c394b407c23570136c53171fa55Issue Tracking, Patch, Vendor Advisory
- http://d3adend.org/blog/?p=403Issue Tracking, Third Party Advisory
- http://seclists.org/fulldisclosure/2014/Mar/30Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/65959Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/91560Issue Tracking, Third Party Advisory, VDB Entry
- https://github.com/apache/cordova-plugin-inappbrowser/commit/26702cb0720c5c394b407c23570136c53171fa55Issue Tracking, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-0073?
How severe is CVE-2014-0073?
How do I fix CVE-2014-0073?
Are you affected by CVE-2014-0073?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
