AirDroid 1.0.4 beta uses the MD5 algorithm for values in the checklogin key parameter and 7bb cookie, which makes it easier for remote attackers to obtain cleartext data by sniffing the local wireless network and then conducting a (1) brute-force attack or (2) rainbow-table attack.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2012-07-26T22:00:00Z

Updated: 2024-09-17T03:33:02.767Z

Reserved: 2012-07-10T00:00:00Z

Link: CVE-2012-3886

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2012-07-26T22:55:01.793

Modified: 2012-07-27T13:48:13.463

Link: CVE-2012-3886

cve-icon Redhat

No data.