CVE-2020-25203

T

he Framer Preview application 12 for Android exposes com.framer.viewer.FramerViewActivity to other applications. By calling the intent with the action set to android.intent.action.VIEW, any other application is able to load any website/web content into the application's context, which is shown as a full-screen overlay to the user.

Configurations

Configuration 1 (hide)

cpe:2.3:a:framer:framer_preview:12.0:*:*:*:*:android:*:*

History

21 Nov 2024, 05:17

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/159264/Framer-Preview-12-Content-Injection.html - Exploit, Third Party Advisory, VDB Entry () http://packetstormsecurity.com/files/159264/Framer-Preview-12-Content-Injection.html - Exploit, Third Party Advisory, VDB Entry
References () https://rcesecurity.com - Broken Link () https://rcesecurity.com - Broken Link

Information

Published : 2020-09-25 04:23

Updated : 2024-11-21 05:17


NVD link : CVE-2020-25203

Mitre link : CVE-2020-25203

CVE.ORG link : CVE-2020-25203


JSON object : View

Products Affected