Cross-site scripting (XSS) vulnerability in the GoodReader app 3.16 and earlier for iOS on the iPad, and 3.15.1 and earlier for iOS on the iPhone and iPod touch, allows remote attackers to inject arbitrary web script or HTML via vectors involving use of this app in conjunction with a web browser.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
No history.
Information
Published : 2012-08-07 19:55
Updated : 2022-08-09 13:49
NVD link : CVE-2012-2648
Mitre link : CVE-2012-2648
CVE.ORG link : CVE-2012-2648
JSON object : View
Products Affected
goodiware
- goodreader
apple
- iphone_os
- ipod_touch
- ipad
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')