Medium severity5.3NVD Advisory· Published Sep 26, 2017· Updated May 13, 2026
CVE-2014-8889
CVE-2014-8889
Description
Dropbox SDK for Android before 1.6.2 might allow remote attackers to obtain sensitive information via crafted malware or via a drive-by download attack.
Affected products
2cpe:2.3:a:dropbox:dropbox_sdk:1.5.4:*:*:*:*:android:*:*+ 1 more
- cpe:2.3:a:dropbox:dropbox_sdk:1.5.4:*:*:*:*:android:*:*
- cpe:2.3:a:dropbox:dropbox_sdk:1.6.1:*:*:*:*:android:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- packetstormsecurity.com/files/130767/Dropbox-SDK-For-Android-Remote-Exploitation.htmlnvdThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2015/Mar/61nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/73035nvdThird Party AdvisoryVDB Entry
- securityintelligence.com/droppedin-remotely-exploitable-vulnerability-in-the-dropbox-sdk-for-android/nvdThird Party Advisory
- www.securityfocus.com/archive/1/534843/100/1500/threadednvd
News mentions
0No linked articles in our index yet.