CVE-2014-1885: Medium severity Hsgroup Forzearmate Android vulnerability
The ForzeArmate application for Android, when Adobe PhoneGap 2.9.0 or earlier is used, allows remote attackers to execute arbitrary JavaScript code, and consequently obtain write access to external-storage resources, by leveraging control over any Google syndication advertising domain.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-1885?
CVE-2014-1885 is considered a critical vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2014-1885?
To fix CVE-2014-1885, upgrade the ForzeArmate application to a version that does not rely on Adobe PhoneGap 2.9.0 or earlier.
What systems are affected by CVE-2014-1885?
CVE-2014-1885 affects the ForzeArmate application on Android devices when using Adobe PhoneGap 2.9.0 or earlier.
What types of attacks are possible with CVE-2014-1885?
CVE-2014-1885 allows attackers to execute arbitrary JavaScript code, potentially compromising external storage access.
Who can be targeted by CVE-2014-1885?
CVE-2014-1885 can target any user of the ForzeArmate app running on affected versions of Adobe PhoneGap.