Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xv84-3fv6-rp2r

Опубликовано: 12 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

ims_ex is a vendor system service used to manage VoLTE in unisoc devices?But it does not verify the caller's permissions?so that normal apps (No phone permissions) can obtain some VoLTE sensitive information and manage VoLTE calls.Product: AndroidVersions: Android SoCAndroid ID: A-206492634

ims_ex is a vendor system service used to manage VoLTE in unisoc devices?But it does not verify the caller's permissions?so that normal apps (No phone permissions) can obtain some VoLTE sensitive information and manage VoLTE calls.Product: AndroidVersions: Android SoCAndroid ID: A-206492634

EPSS

Процентиль: 25%
0.00083
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 9.1
nvd
почти 4 года назад

ims_ex is a vendor system service used to manage VoLTE in unisoc devices,But it does not verify the caller's permissions,so that normal apps (No phone permissions) can obtain some VoLTE sensitive information and manage VoLTE calls.Product: AndroidVersions: Android SoCAndroid ID: A-206492634

EPSS

Процентиль: 25%
0.00083
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-276