CVE-2011-4770: Medium severity QIWI Wallet vulnerability
Published Jan 25, 2012
·Updated
The QIWI Wallet (ru.mw) application before 1.14.2 for Android does not properly protect data, which allows remote attackers to read or modify financial information via a crafted application.
Affected Software
3 affected components
QIWI Wallet<=1.14.2
QIWI Wallet=1.13
Android Android
Event History
Jan 25, 2012
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
04:03 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-4770?
CVE-2011-4770 is categorized as a high severity vulnerability due to its potential for allowing remote attackers to read or modify sensitive financial information.
2
How do I fix CVE-2011-4770?
To fix CVE-2011-4770, upgrade the QIWI Wallet application to version 1.14.2 or later.
3
What versions of QIWI Wallet are affected by CVE-2011-4770?
CVE-2011-4770 affects QIWI Wallet versions prior to 1.14.2, including version 1.13.
4
What type of attacks can exploit CVE-2011-4770?
CVE-2011-4770 can be exploited by attackers using a crafted application to read or modify financial data.
5
Is CVE-2011-4770 specific to any operating system?
CVE-2011-4770 specifically affects the QIWI Wallet application on Android devices.