CVE-2017-17553
Last modified
CVE-2017-17553 is a vulnerability of currently unknown severity. The Dolphin Browser for Android 12.0.2 suffers from an insecure parsing implementation of the Intent URI scheme. This vulnerability could allow attackers to abuse this implementation through a malicious Intent URI, in order to invoke private Activities within the Dolphin Browser.. EPSS estimates a 0.85% chance of exploitation in the next 30 days.
Description
The Dolphin Browser for Android 12.0.2 suffers from an insecure parsing implementation of the Intent URI scheme. This vulnerability could allow attackers to abuse this implementation through a malicious Intent URI, in order to invoke private Activities within the Dolphin Browser.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Changyou | Dolphin | 12.0.2 |
References
- https://github.com/VerSprite/research/blob/master/advisories/VS-2017-002.mdThird Party Advisory
- https://github.com/VerSprite/research/blob/master/advisories/VS-2017-002.mdThird Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-17553?
How severe is CVE-2017-17553?
How do I fix CVE-2017-17553?
Are you affected by CVE-2017-17553?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
