Vulnerability Description
The Xiaomi MiTalk Messenger (com.xiaomi.channel) application before 2.1.320 for Android does not properly protect data, which allows remote attackers to read or modify messaging information via a crafted application.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Xiaomi | Mitalk Messenger | <= 2.1.310 |
| Android | Android | All versions |
Related Weaknesses (CWE)
References
- http://www4.comp.polyu.edu.hk/~appsec/bugs/CVE-2011-4697-vulnerability-in-MiTalk
- http://www4.comp.polyu.edu.hk/~appsec/bugs/CVE-2011-4697-vulnerability-in-MiTalk
FAQ
What is CVE-2011-4697?
CVE-2011-4697 is a vulnerability with a CVSS score of 6.4 (MEDIUM). The Xiaomi MiTalk Messenger (com.xiaomi.channel) application before 2.1.320 for Android does not properly protect data, which allows remote attackers to read or modify messaging information via a craf...
How severe is CVE-2011-4697?
CVE-2011-4697 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-4697?
Check the references section above for vendor advisories and patch information. Affected products include: Xiaomi Mitalk Messenger, Android Android.