Check Point Reference: | CPAI-2014-1815 |
Date Published: | 22 Sep 2014 |
Severity: | High |
Last Updated: | Monday 22 September, 2014 |
Source: | IPS Research Team |
Industry Reference: | CVE-2014-6041 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Google Android Browser in Android before 4.4 |
Vulnerability Description | A security bypass vulnerability has been reported in Google Android's stock browser. Attackers can exploit this issue to bypass the same-origin policy and certain access restrictions to access data, or execute arbitrary script code in the browser of an unsuspecting user in the context of another site. |
SmartView Tracker will log the following entries:
Attack Name: Web Client Enforcement Violation.
Attack Information: Google Android Browser Same Origin Policy Bypass