The Sleipnir Mobile application 2.12.1 and earlier and Sleipnir Mobile Black Edition application 2.12.1 and earlier for Android provide Geolocation API data without verifying user consent, which allows remote attackers to obtain sensitive location information via a web site that makes API calls.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: jpcert
Published: 2014-01-22T21:00:00
Updated: 2024-08-06T09:27:20.175Z
Reserved: 2014-01-06T00:00:00
Link: CVE-2014-0806

No data.

Status : Deferred
Published: 2014-01-22T21:55:03.653
Modified: 2025-04-11T00:51:21.963
Link: CVE-2014-0806

No data.