Vulnerabilities > Cmcm

DATE CVE VULNERABILITY TITLE RISK
2018-08-15 CVE-2017-13106 Use of Hard-coded Credentials vulnerability in Cmcm CM Launcher 3D 5.0.3
Cheetahmobile CM Launcher 3D - Theme, wallpaper, Secure, Efficient, 5.0.3, 2017-09-19, Android application uses a hard-coded key for encryption.
network
low complexity
cmcm CWE-798
5.0
2018-01-12 CVE-2018-5327 Unspecified vulnerability in Cmcm Armorfly Browser & Downloader 1.1.05.0010
Cheetah Mobile Armorfly Browser & Downloader 1.1.05.0010, when installed on unspecified "older" Android platforms, allows Same Origin Policy Bypass.
network
low complexity
cmcm google
5.0
2018-01-12 CVE-2018-5326 Unspecified vulnerability in Cmcm CM Browser 5.22.06.0012
Cheetah Mobile CM Browser 5.22.06.0012, when installed on unspecified "older" Android platforms, allows Same Origin Policy Bypass.
network
low complexity
cmcm google
5.0
2014-09-09 CVE-2014-5655 Cryptographic Issues vulnerability in Cmcm CM Browser - Fast & Secure 5.0.50
The CM Browser - Fast & Secure (aka com.ksmobile.cb) application 5.0.50 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
5.4
2014-09-09 CVE-2014-5640 Cryptographic Issues vulnerability in Cmcm CM Backup Restore Cloud Photo 1.1.0.135
The CM Backup -Restore,Cloud,Photo (aka com.ijinshan.kbackup) application 1.1.0.135 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
5.4