A security bypass vulnerability exists in Symantec Norton Mobile Security for Android before 3.16, which could let a malicious user conduct a man-in-the-middle via specially crafted JavaScript to add arbitrary URLs to the URL whitelist.
References
Link Resource
http://www.securityfocus.com/bid/93901 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1037225 Third Party Advisory VDB Entry
https://support.symantec.com/us/en/article.symsa1384.html Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: symantec

Published: 2020-01-08T16:51:32

Updated: 2020-01-08T16:51:32

Reserved: 2016-08-03T00:00:00


Link: CVE-2016-6586

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-01-08T17:15:10.743

Modified: 2020-01-15T18:36:16.633


Link: CVE-2016-6586

JSON object: View

cve-icon Redhat Information

No data.

CWE