We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2018-12446



Description

An issue was discovered in the com.dropbox.android application 98.2.2 for Android. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method's return value to true. In other words, an attacker could authenticate with an arbitrary passcode. NOTE: the vendor indicates that this is not an attack of interest within the context of their threat model, which excludes Android devices on which rooting has occurred

Reserved 2018-06-15 | Published 2018-06-20 | Updated 2024-08-05 | Assigner mitre

References

gist.github.com/tanprathan/97b4c04ec6af4da62929e73214fddd1b

cve.org (CVE-2018-12446)

nvd.nist.gov (CVE-2018-12446)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2018-12446

Support options

Helpdesk Chat, Email, Knowledgebase
Telegram Chat
Subscribe to our newsletter to learn more about our work.