Description
The Content Provider in the MovatwiTouch application before 1.793 and MovatwiTouch Paid application before 1.793 for Android does not properly restrict access to authorization information, which allows attackers to hijack Twitter accounts via a crafted application.
Published: 2013-06-06
Score: 2.6 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2013-2264 The Content Provider in the MovatwiTouch application before 1.793 and MovatwiTouch Paid application before 1.793 for Android does not properly restrict access to authorization information, which allows attackers to hijack Twitter accounts via a crafted application.
History

No history.

Subscriptions

Jig Movatwitouch Movatwitouch Paid
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-09-17T03:42:39.690Z

Reserved: 2013-03-04T00:00:00.000Z

Link: CVE-2013-2318

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2013-06-06T13:02:14.510

Modified: 2026-04-29T01:13:23.040

Link: CVE-2013-2318

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses