Multiple HTC Android devices including Desire HD FRG83D and GRI40, Glacier FRG83, Droid Incredible FRF91, Thunderbolt 4G FRG83D, Sensation Z710e GRI40, Sensation 4G GRI40, Desire S GRI40, EVO 3D GRI40, and EVO 4G GRI40 allow remote attackers to obtain 802.1X Wi-Fi credentials and SSID via a crafted application that uses the android.permission.ACCESS_WIFI_STATE permission to call the toString method on the WifiConfiguration class.

Project Subscriptions

Vendors Products
Desire Hd Subscribe
Desire S Subscribe
Droid Incredible Subscribe
Glacier Subscribe
Sensation 4g Subscribe
Sensation Z710e Subscribe
Thunderbolt 4g Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2011-4789 Multiple HTC Android devices including Desire HD FRG83D and GRI40, Glacier FRG83, Droid Incredible FRF91, Thunderbolt 4G FRG83D, Sensation Z710e GRI40, Sensation 4G GRI40, Desire S GRI40, EVO 3D GRI40, and EVO 4G GRI40 allow remote attackers to obtain 802.1X Wi-Fi credentials and SSID via a crafted application that uses the android.permission.ACCESS_WIFI_STATE permission to call the toString method on the WifiConfiguration class.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published:

Updated: 2024-09-17T02:37:18.428Z

Reserved: 2011-12-21T00:00:00.000Z

Link: CVE-2011-4872

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2012-02-05T11:55:03.047

Modified: 2025-04-11T00:51:21.963

Link: CVE-2011-4872

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses