// For flags

CVE-2014-1887

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The DrinkedIn BarFinder application for Android, when Adobe PhoneGap 2.9.0 or earlier is used, allows remote attackers to execute arbitrary JavaScript code, and consequently obtain sensitive fine-geolocation information, by leveraging control over one of a number of adult sites, as demonstrated by (1) freelifetimecheating.com and (2) www.babesroulette.com.

La aplicación DrinkedIn BarFinder para Android, cuando Adobe PhoneGap 2.9.0 o anteriores es utilizado, permite a atacantes remotos ejecutar código JavaScript arbitrario y como consecuencia obtener información sensible de geolocalización, mediante el aprovechamiento de control sobre uno de un número de sitios adultos, tal y como fue demostrado por (1) freelifetimecheating.com y (2) www.babesroulette.com.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2014-02-07 CVE Reserved
  • 2014-03-03 CVE Published
  • 2024-08-06 CVE Updated
  • 2024-08-06 First Exploit
  • 2024-12-17 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.0.0
Search vendor "Adobe" for product "Phonegap" and version "2.0.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.0.0
Search vendor "Adobe" for product "Phonegap" and version "2.0.0"
rc1
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.1.0
Search vendor "Adobe" for product "Phonegap" and version "2.1.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.2.0
Search vendor "Adobe" for product "Phonegap" and version "2.2.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.2.0
Search vendor "Adobe" for product "Phonegap" and version "2.2.0"
rc1
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.2.0
Search vendor "Adobe" for product "Phonegap" and version "2.2.0"
rc2
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.3.0
Search vendor "Adobe" for product "Phonegap" and version "2.3.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.3.0
Search vendor "Adobe" for product "Phonegap" and version "2.3.0"
rc1
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.3.0
Search vendor "Adobe" for product "Phonegap" and version "2.3.0"
rc2
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.4.0
Search vendor "Adobe" for product "Phonegap" and version "2.4.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.4.0
Search vendor "Adobe" for product "Phonegap" and version "2.4.0"
rc1
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.5.0
Search vendor "Adobe" for product "Phonegap" and version "2.5.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.5.0
Search vendor "Adobe" for product "Phonegap" and version "2.5.0"
rc1
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.6.0
Search vendor "Adobe" for product "Phonegap" and version "2.6.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.6.0
Search vendor "Adobe" for product "Phonegap" and version "2.6.0"
rc1
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.7.0
Search vendor "Adobe" for product "Phonegap" and version "2.7.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.7.0
Search vendor "Adobe" for product "Phonegap" and version "2.7.0"
rc1
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.8.0
Search vendor "Adobe" for product "Phonegap" and version "2.8.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.8.1
Search vendor "Adobe" for product "Phonegap" and version "2.8.1"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.9.0
Search vendor "Adobe" for product "Phonegap" and version "2.9.0"
-
Safe
Drinkedin
Search vendor "Drinkedin"
Drinkedin Barfinder
Search vendor "Drinkedin" for product "Drinkedin Barfinder"
-android
Affected
in Adobe
Search vendor "Adobe"
Phonegap
Search vendor "Adobe" for product "Phonegap"
2.9.0
Search vendor "Adobe" for product "Phonegap" and version "2.9.0"
rc1
Safe