Required CVE Record Information
Description
Apache Cordova iOS before 4.0.0 allows remote attackers to execute arbitrary plugins via a link.
References 6 Total
- https://cordova.apache.org/announcements/2016/04/27/security.html
- jvn.jp: JVN#41772178 third-party-advisory
- jvndb.jvn.jp: JVNDB-2016-000059 third-party-advisory
- securityfocus.com: 88797 vdb-entry
- http://packetstormsecurity.com/files/136839/Apache-Cordova-iOS-3.9.1-Arbitrary-Plugin-Execution.html
- securityfocus.com: 20160427 CVE-2015-5208 - Arbitrary plugin execution issue in Apache Cordova iOS mailing-list
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 6 Total
- https://cordova.apache.org/announcements/2016/04/27/security.html x_transferred
- jvn.jp: JVN#41772178 third-party-advisoryx_transferred
- jvndb.jvn.jp: JVNDB-2016-000059 third-party-advisoryx_transferred
- securityfocus.com: 88797 vdb-entryx_transferred
- http://packetstormsecurity.com/files/136839/Apache-Cordova-iOS-3.9.1-Arbitrary-Plugin-Execution.html x_transferred
- securityfocus.com: 20160427 CVE-2015-5208 - Arbitrary plugin execution issue in Apache Cordova iOS mailing-listx_transferred