CVE Vulnerabilities

CVE-2013-2318

Published: Jun 06, 2013 | Modified: Jun 07, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Content Provider in the MovatwiTouch application before 1.793 and MovatwiTouch Paid application before 1.793 for Android does not properly restrict access to authorization information, which allows attackers to hijack Twitter accounts via a crafted application.

Affected Software

Name Vendor Start Version End Version
Movatwitouch Jig * 1.792 (including)
Movatwitouch_paid Jig * 1.792 (including)

References