The Sleipnir Mobile application 2.12.1 and earlier and Sleipnir Mobile Black Edition application 2.12.1 and earlier for Android provide Geolocation API data without verifying user consent, which allows remote attackers to obtain sensitive location information via a web site that makes API calls.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2014-01-22T21:00:00

Updated: 2024-08-06T09:27:20.175Z

Reserved: 2014-01-06T00:00:00

Link: CVE-2014-0806

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-01-22T21:55:03.653

Modified: 2014-08-11T15:04:43.700

Link: CVE-2014-0806

cve-icon Redhat

No data.