5.5
CVSSv3

CVE-2020-25203

Published: 25/09/2020 Updated: 06/10/2020
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Framer Preview application 12 for Android exposes com.framer.viewer.FramerViewActivity to other applications. By calling the intent with the action set to android.intent.action.VIEW, any other application is able to load any website/web content into the application's context, which is shown as a full-screen overlay to the user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

framer framer preview 12.0

Mailing Lists

RCE Security Advisory wwwrcesecuritycom 1 ADVISORY INFORMATION ======================= Product: Framer Preview Vendor URL: playgooglecom/store/apps/details?id=comframerjsandroid Type: Improper Export of Android Application Components [CWE-926] Date found: 2020-09-06 Date published: 2020-09-22 CVSSv3 ...