CVE-2014-0803
Directory traversal vulnerability in the tetra filer application 2.3.1 and earlier for Android 4.0.3, tetra filer free application 2.3.1 and earlier for Android 4.0.3, tetra filer application 1.5.1 and earlier for Android before 4.0.3, and tetra filer…
Does this matter?
Lower severity and a low EPSS score (1.25%). Track it; it rarely justifies an emergency change on its own.
Description
Directory traversal vulnerability in the tetra filer application 2.3.1 and earlier for Android 4.0.3, tetra filer free application 2.3.1 and earlier for Android 4.0.3, tetra filer application 1.5.1 and earlier for Android before 4.0.3, and tetra filer free application 1.5.1 and earlier for Android before 4.0.3 allows attackers to overwrite or create arbitrary files via unspecified vectors.
- CVSS 2.0
- 5.8 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:P
- EPSS
- 1.25% probability · 68th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- yuichiro okuyama/tetra filer · yuichiro okuyama/tetra filer free
- Source
- vultures@jpcert.or.jp
References
- http://jvn.jp/en/jp/JVN51285738/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2014-000002
- https://play.google.com/store/apps/details?id=jp.main.brits.android.filer.app
- https://play.google.com/store/apps/details?id=jp.main.brits.android.filer.free
- http://jvn.jp/en/jp/JVN51285738/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2014-000002
- https://play.google.com/store/apps/details?id=jp.main.brits.android.filer.app
- https://play.google.com/store/apps/details?id=jp.main.brits.android.filer.free
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.