Description
Multiple HTC Android devices including Desire HD FRG83D and GRI40, Glacier FRG83, Droid Incredible FRF91, Thunderbolt 4G FRG83D, Sensation Z710e GRI40, Sensation 4G GRI40, Desire S GRI40, EVO 3D GRI40, and EVO 4G GRI40 allow remote attackers to obtain 802.1X Wi-Fi credentials and SSID via a crafted application that uses the android.permission.ACCESS_WIFI_STATE permission to call the toString method on the WifiConfiguration class.
Published: 2012-02-05
Score: 2.6 Low
EPSS: 1.5% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2011-4789 Multiple HTC Android devices including Desire HD FRG83D and GRI40, Glacier FRG83, Droid Incredible FRF91, Thunderbolt 4G FRG83D, Sensation Z710e GRI40, Sensation 4G GRI40, Desire S GRI40, EVO 3D GRI40, and EVO 4G GRI40 allow remote attackers to obtain 802.1X Wi-Fi credentials and SSID via a crafted application that uses the android.permission.ACCESS_WIFI_STATE permission to call the toString method on the WifiConfiguration class.
History

No history.

Subscriptions

Htc Desire Hd Desire S Droid Incredible Evo 3d Evo 4g Glacier Sensation 4g Sensation Z710e Thunderbolt 4g
cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published:

Updated: 2024-09-17T02:37:18.428Z

Reserved: 2011-12-21T00:00:00.000Z

Link: CVE-2011-4872

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2012-02-05T11:55:03.047

Modified: 2026-04-29T01:13:23.040

Link: CVE-2011-4872

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses