CVE-2011-0680

EUVD-2011-0698
data/WorkingMessage.java in the Mms application in Android before 2.2.2 and 2.3.x before 2.3.2 does not properly manage the draft cache, which allows remote attackers to read SMS messages intended for other recipients in opportunistic circumstances via a standard text messaging service.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
Affected Products (NVD)
VendorProductVersion
googleandroid
𝑥
≤ 2.2.1
googleandroid
1.5
googleandroid
1.6
googleandroid
2.1
googleandroid
2.2:rev1
googleandroid
2.3:rev1
𝑥
= Vulnerable software versions
References