CVE-2019-9938: Medium severity shareit vulnerability
The SHAREit application before 4.0.42 for Android allows a remote attacker (on the same network or joining public "open" Wi-Fi hotspots created by the application when file transfer is initiated) to download arbitrary files from the device including contacts, photos, videos, sound clips, etc. The attacker must be authenticated as a "recognized device."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-9938?
CVE-2019-9938 has been classified as a high severity vulnerability due to its potential for remote exploitation.
How do I fix CVE-2019-9938?
To mitigate CVE-2019-9938, update SHAREit to version 4.0.42 or later as soon as possible.
What type of files can be accessed due to CVE-2019-9938?
CVE-2019-9938 allows unauthorized access to various files including contacts, photos, videos, and sound clips.
Who is affected by CVE-2019-9938?
CVE-2019-9938 affects users of SHAREit for Android prior to version 4.0.42.
How does CVE-2019-9938 work?
CVE-2019-9938 enables a remote attacker on the same network to exploit file transfer operations and download arbitrary files from a device.