CVE-2014-7951
Directory traversal vulnerability in the Android debug bridge (aka adb) in Android 4.0.4 allows physically proximate attackers with a direct connection to the target Android device to write to arbitrary files owned by system via a .. (dot dot) in the tar archive headers.
- Affected products
- Android
- Google Android
- = 4.0.4
- CVSS 3.1
- 4.6 MEDIUM
- EPSS
- 1.1% (63th percentile)
- Weakness
- CWE-22
- NVD status
- Modified
- Published
- 2020-02-20
CVE-2014-7951 at NVD
6 known exploits for CVE-2014-7951
Proof-of-concept code and exploit modules indexed by Sploitus