CVE-2011-4701: Medium severity Hatena Callconfirm vulnerability
Published Jan 25, 2012
·Updated
The CallConfirm (jp.gr.javaconf.ofnhwx.callconfirm) application 2.0.0 for Android does not properly protect data, which allows remote attackers to read or modify allow/block lists via a crafted application.
Affected Software
2 affected components
Hatena Callconfirm=2.0.0
Android Android
Event History
Jan 25, 2012
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
04:03 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-4701?
CVE-2011-4701 is classified as a medium severity vulnerability due to its potential to expose sensitive data.
2
How do I fix CVE-2011-4701?
To fix CVE-2011-4701, update the CallConfirm application to the latest version or remove the application from your device.
3
What type of data is affected by CVE-2011-4701?
CVE-2011-4701 affects the allow/block lists within the CallConfirm application.
4
Who is affected by CVE-2011-4701?
Users of the CallConfirm application version 2.0.0 on Android devices are affected by CVE-2011-4701.
5
Can CVE-2011-4701 be exploited remotely?
Yes, CVE-2011-4701 can be exploited remotely by attackers through a crafted application.