CVE Tools

Airdroid

7 CVEs tracked since 2012. Since Jul 2012, none of them reached CISA KEV.

Airdroid CVEs per month

Jul 2012 to Oct 2015. Point at a month, or focus the strip and use the arrow keys.
Airdroid CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2012-0750
2012-08null or fewer
2012-09null or fewer
2012-10null or fewer
2012-11null or fewer
2012-12null or fewer
2013-01null or fewer
2013-02null or fewer
2013-03null or fewer
2013-0410
2013-05null or fewer
2013-06null or fewer
2013-07null or fewer
2013-08null or fewer
2013-09null or fewer
2013-10null or fewer
2013-11null or fewer
2013-12null or fewer
2014-01null or fewer
2014-02null or fewer
2014-03null or fewer
2014-04null or fewer
2014-05null or fewer
2014-06null or fewer
2014-07null or fewer
2014-08null or fewer
2014-09null or fewer
2014-10null or fewer
2014-11null or fewer
2014-12null or fewer
2015-01null or fewer
2015-02null or fewer
2015-03null or fewer
2015-04null or fewer
2015-05null or fewer
2015-06null or fewer
2015-07null or fewer
2015-08null or fewer
2015-09null or fewer
2015-1010

Products

The products that kept showing up in Airdroid's monthly top three, with their CVEs summed over those months.

  1. Airdroid73 months

Latest CVEs

The 8 most recently published vulnerabilities affecting Airdroid.

  1. CVE-2019-9599The AirDroid application through 4.2.1.6 for Android allows remote attackers to cause a denial of service (service crash) via many simultaneous sdctl/comm/lite_auth/ requests.7.5
  2. CVE-2015-5661The SAND STUDIO AirDroid application 1.1.0 and earlier for Android mishandles implicit intents, which allows attackers to obtain sensitive information via a crafted application.4.3
  3. CVE-2013-0134Cross-site scripting (XSS) vulnerability in the web interface in AirDroid allows remote attackers to inject arbitrary web script or HTML via a crafted text message that is transmitted by a managed ...4.3
  4. CVE-2012-3887AirDroid before 1.0.7 beta uses a cleartext base64 format for data transfer that is documented as an "Encrypted Transmission" feature, which allows remote attackers to obtain sensitive information ...5.0
  5. CVE-2012-3884AirDroid 1.0.4 beta implements authentication through direct transmission of a password hash over HTTP, which makes it easier for remote attackers to obtain access by sniffing the local wireless ne...5.0
  6. CVE-2012-3888The login implementation in AirDroid 1.0.4 beta allows remote attackers to bypass a multiple-login protection mechanism by modifying a pass value within JSON data.5.0
  7. CVE-2012-3886AirDroid 1.0.4 beta uses the MD5 algorithm for values in the checklogin key parameter and 7bb cookie, which makes it easier for remote attackers to obtain cleartext data by sniffing the local wirel...5.0
  8. CVE-2012-3885The default configuration of AirDroid 1.0.4 beta uses a four-character alphanumeric password, which makes it easier for remote attackers to obtain access via a brute-force attack.7.5

The record

Peak rank
#21 in Jul 2012
Busiest month shown
Jul 2012, 5 CVEs
Months with a KEV entry
0 since Jul 2012
Monthly snapshots
3 since 2012
Airdroid's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store