CVE-2011-1717 Information
Feb 14, 2021
cve
Description
Skype for Android stores sensitive user data without encryption in sqlite3 databases that have weak permissions which allows local applications to read user IDs contacts phone numbers date of birth instant message logs and other private information.
Reference
http://blogs.skype.com/security/2011/04/privacy_vulnerability_in_skype.html http://www.androidpolice.com/2011/04/14/exclusive-vulnerability-in-skype-for-android-is-exposing-your-name-phone-number-chat-logs-and-a-lot-more/ http://www.securitytracker.com/id?1025387 http://www.theregister.co.uk/2011/04/15/skype_for_android_vulnerable/
Share on: