CVE-2014-3500

CWE-174 documents4 sources
Severity
6.4MEDIUM
EPSS
1.2%
top 20.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 15
Latest updateMay 17

Description

Apache Cordova Android before 3.5.1 allows remote attackers to change the start page via a crafted intent URL.

CVSS vector

AV:N/AC:L/C:P/I:P/A:NExploitability: 10.0 | Impact: 4.9

Affected Packages1 packages

NVDapache/cordova3.5.0

🔴Vulnerability Details

2
GHSA
GHSA-p4v6-7phw-qvv7: Apache Cordova Android before 32022-05-17
CVEList
CVE-2014-3500: Apache Cordova Android before 32014-11-15

💥Exploits & PoCs

1
Exploit-DB
KingScada AlarmServer 3.1.2.13 - Remote Stack Buffer Overflow (Metasploit)2017-09-14
CVE-2014-3500 (MEDIUM CVSS 6.4) | Apache Cordova Android before 3.5.1 | cvebase.io