VYPR
High severity8.1NVD Advisory· Published Apr 27, 2018· Updated Jun 17, 2026

CVE-2013-7202

CVE-2013-7202

Description

The WebHybridClient class in PayPal 5.3 and earlier for Android allows remote attackers to execute arbitrary JavaScript on the system.

Affected products

3
  • Paypal/Paypal2 versions
    cpe:2.3:a:paypal:paypal:*:*:*:*:*:android:*:*+ 1 more
    • cpe:2.3:a:paypal:paypal:*:*:*:*:*:android:*:*range: <=5.3
    • (no CPE)range: <=5.3
  • Range: <=5.3

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.