CVE-2026-101886EPSS p2.9%
CVE-2026-101886CVE-2026-101886
Description
Cisco Jabber for Android (com.cisco.im) before 15.3.1.311364 contains a path traversal vulnerability that allows a malicious app with no permissions to write attacker-controlled files into Jabber's private data directory by exploiting the exported crosslaunch.share activity and an unsanitized display name from a ContentProvider used in file path construction. Attackers can craft a shared content:// URI with a display name containing '../' sequences to place fully attacker-controlled content within directories such as databases/, shared_prefs/, no_backup/, and files/ without user interaction.
Scoring
| CVSS | 4.0 () |
| Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
| EPSS | 0.14% probability of exploitation · percentile 2.9% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-10 |