The twicca application 0.7.0 through 0.9.30 for Android does not properly restrict the use of network privileges, which allows remote attackers to read media files on an SD card via a crafted application.
2012-03-17T10:55:01.327
2025-04-11T00:51:21.963
Deferred
CVSSv2: 5.0 (MEDIUM)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | tetsuya_aoyama | twicca | 0.7.0 | Yes |
| Application | tetsuya_aoyama | twicca | 0.8.8 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.4g | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.4g2 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.13 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.13a | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.13b-rc2 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.16 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.17b | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.20 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.20a | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.20b | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.20c | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.20e | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.26 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.26c | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.26c2 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.30 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.31 | Yes |
| Application | tetsuya_aoyama | twicca | 0.9.31a | Yes |
| Operating System | android | * | No |