Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
net/PacProxySelector.java in the Proxy Auto-Config (PAC) feature in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-07-01 does not ensure that URL information is restricted to a scheme, host, and port, which allows remote attackers to discover credentials by operating a server with a PAC script, aka internal bug 27593919.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Android Proxy Auto-Config 信息泄露漏洞
Vulnerability Description
Android是美国谷歌(Google)公司和开放手持设备联盟(简称OHA)共同开发的一套以Linux为基础的开源操作系统。Proxy Auto-Config(PAC)是其中的一个类Script的组件。 Android的PAC组件中存在信息泄露漏洞。攻击者可借助特定的应用程序利用该漏洞访问敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A