Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Cory Pruce

Researcher fromCarnegie Mellon University
#47858of 56,334
5.5Total CVSS
Vulnerabilities · 1
PT-2016-5727
5.5
2016-09-11
Google · Android · CVE-2016-3897
**Name of the Vulnerable Software and Affected Versions** Android versions 4.x through 4.4.3 Android versions 5.0.x through 5.0.1 Android versions 5.1.x through 5.1.0 Android versions 6.x before 2016-09-01 **Description** The issue allows attackers to obtain sensitive information via a crafted application. This is due to the WifiEnterpriseConfig class including a password in the return value of a `toString` method call. **Recommendations** For Android versions 4.x through 4.4.3, update to version 4.4.4 or later. For Android versions 5.0.x through 5.0.1, update to version 5.0.2 or later. For Android versions 5.1.x through 5.1.0, update to version 5.1.1 or later. For Android versions 6.x before 2016-09-01, update to a version released on or after 2016-09-01.