google android-api CVE-2012-6636 is a vulnerability in Google Android Api
Published on March 3, 2014

The Android API before 17 does not properly restrict the WebView.addJavascriptInterface method, which allows remote attackers to execute arbitrary methods of Java objects by using the Java Reflection API within crafted JavaScript code that is loaded into the WebView component in an application targeted to API level 16 or earlier, a related issue to CVE-2013-4710.

NVD


Products Associated with CVE-2012-6636

Want to know whenever a new CVE is published for Google Android Api? stack.watch will email you.

 

Exploit Probability

EPSS
77.09%
Percentile
98.94%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.