Wording tweak.
This commit is contained in:
@@ -40,7 +40,7 @@ class Metasploit3 < Msf::Exploit::Remote
|
||||
|
||||
A secondary attack vector involves the WebViews embedded inside a large number
|
||||
of Android applications. Ad integrations are perhaps the worst offender here.
|
||||
If you can MITM the WebView's network connection, or can get a persistent XSS
|
||||
If you can MITM the WebView's HTTP connection, or if you can get a persistent XSS
|
||||
into the page displayed in the WebView, then you can inject the html/js served
|
||||
by this module and get a shell.
|
||||
|
||||
|
||||
Reference in New Issue
Block a user