CVE-2014-5319

medium
Published 2014-09-26 · Modified 2026-05-06
CVSS v3
CVSS v2
6.4
VIR risk
6.4

Description

Directory traversal vulnerability in the S-Link SLFileManager application 1.2.5 and earlier for Android allows remote attackers to write to files via unspecified vectors.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: vultures@jpcert.or.jp — http://jvndb.jvn.jp/jvndb/JVNDB-2014-000107

vendor Authored 2026-05-27

Vendor advisory: vultures@jpcert.or.jp — http://jvn.jp/en/jp/JVN16485017/index.html

vendor Authored 2026-05-27

Vendor advisory: vultures@jpcert.or.jp — http://jvn.jp/en/jp/JVN16485017/995479/index.html

Application impact

VendorProductVersionsFixed
s-linkslfilemanager{"endIncluding":"1.2.5"}

References

CWEs

CWE-22

Verify integrity in audit chain (admin only). AS-IS.