CVE-2016-4782: Input Validation
Published May 23, 2016
·Updated
Lenovo SHAREit before 3.5.98ww on Android before 4.2 allows remote attackers to have unspecified impact via a crafted intent: URL, aka an "intent scheme URL attack."
Affected Software
2 affected components
Google Android=4.1.2
Lenovo Shareit Android=3.5.98_ww
Event History
May 23, 2016
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-4782?
CVE-2016-4782 has a medium severity rating, indicating a moderate level of risk to affected systems.
2
How do I fix CVE-2016-4782?
To fix CVE-2016-4782, upgrade to Lenovo SHAREit version 3.5.98_ww or later on Android devices.
3
Who is affected by CVE-2016-4782?
Users of Lenovo SHAREit versions prior to 3.5.98_ww on Android versions below 4.2 are affected by CVE-2016-4782.
4
What type of attack is associated with CVE-2016-4782?
CVE-2016-4782 is associated with an 'intent scheme URL attack' that allows remote exploitation.
5
Is CVE-2016-4782 still a risk for current Lenovo SHAREit users?
No, if users have updated to the latest version of Lenovo SHAREit, they are no longer at risk for CVE-2016-4782.