Description
A vulnerability was identified in Lippu Docx Reader Office Viewer App up to 1.4.5 on Android. This affects the function word.office.docxviewer.document.docx.reader.ViewTxt. Such manipulation of the argument _display_name leads to path traversal. The attack may be performed from remote.
Published: 2026-10-11
Score: 5.3 Medium
EPSS: n/a
KEV: No
Impact: Path Traversal leading to unauthorized file access
Action: Apply Patch
AI Analysis

Impact

The vulnerability resides in the Docx Reader Office Viewer App's document processing function, where manipulation of the _display_name argument allows a crafted request to open arbitrary files outside the intended directory limits. The effect is that an attacker can read sensitive files from the device’s file system or potentially force the application to read files it normally would not be able to access. The weakness is a classic directory traversal flaw (CWE‑22) and the impact is restricted to confidentiality, with no direct integrity or availability damage reported. The description indicates the attack can be performed remotely via the network interface that the application exposes.

Affected Systems

The flaw affects Lippu Docx Reader Office Viewer App on Android devices with versions up to 1.4.5. No later versions were mentioned, and the fixed release (if any) was not specified in the advisory. Users of the affected builds should verify the version deployed on their devices and seek an updated package if available.

Risk and Exploitability

The CVSS base score of 5.3 places the issue in the moderate range. EPSS data is unavailable, and the vulnerability is not listed in the CISA KEV catalog, suggesting that large‑scale exploitation is not documented. Nevertheless, the attack vector is remote, so the potential for exploitation exists, especially if the application is exposed to untrusted network traffic. The absence of additional mitigation notes means that, unless the app employs defensive checks internally, the risk remains moderate to high in environments where malicious input can be injected.

Generated by OpenCVE AI on October 11, 2026 at 10:21 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade the Docx Reader Office Viewer App to a version that has the path traversal fix applied or obtain the vendor’s patch package.
  • Configure the Android device’s file system permissions to restrict the application’s access to the directories it needs, preventing it from reading sensitive files.
  • Disable or restrict the application’s exposed network interface or firewall rules to prevent remote exploitation of the vulnerable path traversal.

Generated by OpenCVE AI on October 11, 2026 at 10:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 11 Oct 2026 08:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was identified in Lippu Docx Reader Office Viewer App up to 1.4.5 on Android. This affects the function word.office.docxviewer.document.docx.reader.ViewTxt. Such manipulation of the argument _display_name leads to path traversal. The attack may be performed from remote.
Title Lippu Docx Reader Office Viewer App path traversal
First Time appeared Lippu
Lippu docx Reader Office Viewer App
Weaknesses CWE-22
CPEs cpe:2.3:a:lippu:docx_reader_office_viewer_app:*:*:*:*:*:*:*:*
Vendors & Products Lippu
Lippu docx Reader Office Viewer App
References
Metrics cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P/E:ND/RL:ND/RC:C'}

cvssV3_0

{'score': 6.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L/E:X/RL:X/RC:C'}

cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L/E:X/RL:X/RC:C'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X'}


Subscriptions

Lippu Docx Reader Office Viewer App
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-10-11T08:00:12.089Z

Reserved: 2026-10-10T13:48:27.882Z

Link: CVE-2026-108544

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-11T08:16:33.913

Modified: 2026-10-11T08:16:33.913

Link: CVE-2026-108544

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-11T12:23:05Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')