VulnerabilityModified
CVE-2014-0804
Directory traversal vulnerability in the CGENE Security File Manager Pro application 1.0.6 and earlier, and Security File Manager Trial application 1.0.6 and earlier, for Android allows attackers to overwrite or create arbitrary files via unspecified…
MEDIUM 5.8EPSS 1.25%
Does this matter?
Lower severity and a low EPSS score (1.25%). Track it; it rarely justifies an emergency change on its own.
Description
Directory traversal vulnerability in the CGENE Security File Manager Pro application 1.0.6 and earlier, and Security File Manager Trial application 1.0.6 and earlier, for Android allows attackers to overwrite or create arbitrary files via unspecified vectors.
- CVSS 2.0
- 5.8 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:P
- EPSS
- 1.25% probability · 68th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- cgene/security file manager
- Source
- vultures@jpcert.or.jp
References
- http://jvn.jp/en/jp/JVN44392991/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2014-000003
- https://play.google.com/store/apps/details?id=com.cgene.android.secret.filelock.free
- https://play.google.com/store/apps/details?id=com.cgene.android.secret.filelock.pro
- http://jvn.jp/en/jp/JVN44392991/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2014-000003
- https://play.google.com/store/apps/details?id=com.cgene.android.secret.filelock.free
- https://play.google.com/store/apps/details?id=com.cgene.android.secret.filelock.pro
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.