First published: Thu Dec 25 2014(Updated: )
The Maxthon Cloud Browser application before 4.1.6.2000 for Android allows remote attackers to spoof the address bar via crafted JavaScript code that uses the history API.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Maxthon | <=4.1.5.2000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-1449 is classified as a medium severity vulnerability due to its potential for address bar spoofing.
To fix CVE-2014-1449, update the Maxthon Cloud Browser to version 4.1.6.2000 or later.
CVE-2014-1449 could allow remote attackers to deceive users by spoofing the browser's address bar.
CVE-2014-1449 affects all versions of Maxthon Cloud Browser for Android prior to 4.1.6.2000.
Yes, CVE-2014-1449 is a vulnerability that specifically affects the Maxthon Cloud Browser.