CVE-2014-5076
The La Banque Postale application before 3.2.6 for Android does not prevent the launching of an activity by a component of another application, which allows attackers to obtain sensitive cached banking information via crafted intents, as demonstrated by the drozer framework.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0037 (0.4%)
Percentile: 59.0%
EPSS: 2026-05-06
Affects
labanquepostale:labanquepostaleTechnical description
The La Banque Postale application before 3.2.6 for Android does not prevent the launching of an activity by a component of another application, which allows attackers to obtain sensitive cached banking information via crafted intents, as demonstrated by the drozer framework.
Published: 9/2/2014, 10:55:04 AM
Last modified: 5/6/2026, 10:30:45 PM