CVE-2014-5076: Labanquepostale
Medium severity, CVSS 4.3. EPSS: 1% chance of exploitation in the next 30 days.
The La Banque Postale application before 3.2.6 for Android does not prevent the launching of an activity by a component of another application, which allows attackers to obtain sensitive cached banking information via crafted intents, as demonstrated by the drozer framework.
Affected products
- Labanquepostale Labanquepostale: up to and including 3.2
Published 2014-09-02. Last modified 2026-06-17.