CVE-2013-5725

Publication date

2013-10-01 00:00:00

Family

mitre

State

PUBLISHED

Description

The Metaclassy Byword app 2.x before 2.1 for iOS does not require confirmation of Replace file actions, which allows remote attackers to overwrite arbitrary files via the name and text parameters in a byword://replace URL.