First published: Mon Oct 30 2017(Updated: )
The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Cordova InAppBrowser iOS | <=0.3.1 | |
Apache Cordova iOS | >=2.6.0<=2.9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0073 is classified as a medium severity vulnerability.
To fix CVE-2014-0073, you should upgrade your Apache Cordova In-App-Browser to version 0.3.2 or later.
CVE-2014-0073 affects Apache Cordova In-App-Browser versions prior to 0.3.2 and Apache Cordova versions between 2.6.0 and 2.9.0 for iOS.
Attackers can exploit CVE-2014-0073 to execute arbitrary code due to improper validation of callback identifiers.
While CVE-2014-0073 was addressed in later versions, any applications still using the affected versions are at risk and should be updated.