{"id":68379,"date":"2025-08-19T16:31:35","date_gmt":"2025-08-19T13:01:35","guid":{"rendered":"https:\/\/afaghhosting.net\/blog\/cve-2025-9135-verkehrsauskunft-osterreich-smartride-android-application-component-export\/"},"modified":"2025-08-19T16:31:35","modified_gmt":"2025-08-19T13:01:35","slug":"cve-2025-9135-verkehrsauskunft-osterreich-smartride-android-application-component-export","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/cve-2025-9135-verkehrsauskunft-osterreich-smartride-android-application-component-export\/","title":{"rendered":"CVE-2025-9135 &#8211; Verkehrsauskunft \u00d6sterreich SmartRide Android Application Component Export"},"content":{"rendered":"<p><strong>CVE ID : <\/strong>CVE-2025-9135<br \/>\n<br \/>\n<strong>Published : <\/strong> Aug. 19, 2025, 11:15 a.m. | 58\u00a0minutes ago<br \/>\n<br \/>\n<strong>Description : <\/strong>A vulnerability was detected in Verkehrsauskunft \u00d6sterreich SmartRide, cleVVVer and BusBahnBim up to 12.1.1(258). The impacted element is an unknown function of the file AndroidManifest.xml. The manipulation results in improper export of android application components. The attack must be initiated from a local position. The exploit is now public and may be used. Upgrading to version 12.1.2(259) is sufficient to resolve this issue. Upgrading the affected component is recommended.<br \/>\n<br \/>\n<strong>Severity:<\/strong> 5.3 | MEDIUM<br \/>\n<br \/>\nVisit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CVE ID : CVE-2025-9135 Published : Aug. 19, 2025, 11:15 a.m. | 58\u00a0minutes ago Description : A vulnerability was detected in Verkehrsauskunft \u00d6sterreich SmartRide, cleVVVer and BusBahnBim up to 12.1.1(258). The impacted element is an unknown function of the file AndroidManifest.xml. The manipulation results in improper export of android application components. The attack must be &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-68379","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/68379","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=68379"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/68379\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=68379"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=68379"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=68379"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}