CVE-2014-5076: Labanquepostale

Medium severity, CVSS 4.3. EPSS: 1% chance of exploitation in the next 30 days.

The La Banque Postale application before 3.2.6 for Android does not prevent the launching of an activity by a component of another application, which allows attackers to obtain sensitive cached banking information via crafted intents, as demonstrated by the drozer framework.

Affected products

Published 2014-09-02. Last modified 2026-06-17.