Information Disclosure Vulnerability in Norton Family Android App by Symantec
CVE-2017-15530

3.3LOW

Key Information:

Vendor
CVE Published:
13 December 2017

What is CVE-2017-15530?

The Norton Family Android App prior to version 4.4.1.10 is exposed to an information disclosure vulnerability that could allow attackers to gain unauthorized access to sensitive user data. Attackers often exploit such vulnerabilities by probing applications for inconsistencies, error messages, system information, user data, version numbers, and other relevant information. The risk inherent in this type of vulnerability lies in providing potential attackers with the necessary information to facilitate further exploitation of the application, thereby jeopardizing user security and privacy.

Affected Version(s)

Norton Family Android App Prior to 4.4.1.10

References

CVSS V3.1

Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.