Skip to main content

Vendor/product archive

adobe / phonegap CVEs

Beta · best-effort

8 CVEs tagged to adobe / phonegap0 Critical, 5 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2014-1885

Published Mar 3, 2014

The ForzeArmate application for Android, when Adobe PhoneGap 2.9.0 or earlier is used, allows remote attackers to execute arbitrary JavaScript code, and consequently obtain write…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-1883

Published Mar 3, 2014

Adobe PhoneGap before 2.6.0 on Android uses the shouldOverrideUrlLoading callback instead of the proper shouldInterceptRequest callback, which allows remote attackers to bypass in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-1882

Published Mar 3, 2014

Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier allow remote attackers to bypass intended device-resource restrictions of an event-based bridge via a crafted…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-1881

Published Mar 3, 2014

Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier allow remote attackers to bypass intended device-resource restrictions of an event-based bridge via a crafted…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-6637

Published Mar 3, 2014

Apache Cordova 3.3.0 and earlier and Adobe PhoneGap 2.9.0 and earlier do not anchor the end of domain-name regular expressions, which allows remote attackers to bypass a whitelist…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1