The Backup and Restore feature in Mobotap Dolphin Browser for Android 12.0.2 suffers from an arbitrary file write vulnerability when attempting to restore browser settings from a malicious Dolphin Browser backup file. This arbitrary file write vulnerability allows an attacker to overwrite a specific executable in the Dolphin Browser's data directory with a crafted malicious executable. Every time the Dolphin Browser is launched, it will attempt to run the malicious executable from disk, thus executing the attacker's code.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-12-11T18:00:00Z
Updated: 2024-09-16T22:36:51.349Z
Reserved: 2017-12-11T00:00:00Z
Link: CVE-2017-17551
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-12-11T18:29:00.187
Modified: 2024-11-21T03:18:08.780
Link: CVE-2017-17551
Redhat
No data.