Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered on Samsung mobile devices with KK(4.4) and later software through 2015-06-16. In some cases, HTTP is used for an Inputmethod, rather than HTTPS. A man-in-the-middle attacker can modify the client-server data stream to insert directory traversal sequences into an extracted file path. The Samsung ID is SVE-2015-4363 (November 2015).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Samsung移动设备路径遍历漏洞
Vulnerability Description
Samsung Mobile Device是韩国Samsung公司的一系列移动智能设备。 Samsung移动设备(Android KK(4.4)及之前版本(2015-06-16及之前))中存在安全漏洞。攻击者可通过实施中间人攻击利用该漏洞修改客户端和服务器之间的数据流,进而向提取的文件路径中插入目录遍历序列。
CVSS Information
N/A
Vulnerability Type
N/A