7.7
CVE-2023-25645
- EPSS 0.03%
- Veröffentlicht 16.06.2023 19:15:14
- Zuletzt bearbeitet 12.12.2024 18:15:22
- Quelle psirt@zte.com.cn
- Teams Watchlist Login
- Unerledigt Login
There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application can perform functions that are protected with signature/privilege-level permissions. Exploitation of this vulnerability could clear personal data and applications on the user's device, affecting device operation.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zte ≫ Up T2 4k Firmware Versionv84511302.1427
Zte ≫ Zxv10 B866v2-h Firmware Versionv84711321.0038
Zte ≫ Zxv10 B866v2-h Firmware Versionv84711321.0040
Zte ≫ Zxv10 B866v2-h Firmware Versionv84711321.0045
Zte ≫ Zxv10 B866v2-h Firmware Versionv84711321.0049
Zte ≫ Zxv10 B866v2 Firmware Versionv82811306.3021
Zte ≫ Zxv10 B866v2 Firmware Versionv82815416.1027
Zte ≫ Zxv10 B866v2 Firmware Versionv82815416.1028
Zte ≫ Zxv10 B866v2 Firmware Versionv82815416.1029
Zte ≫ Zxv10 B866v2 Firmware Versionv82815416.2012
Zte ≫ Zxv10 B866v2 Firmware Versionv84711309.0016
Zte ≫ Zxv10 B866v2 Firmware Versionv84711309.0018
Zte ≫ Zxv10 B866v2 Firmware Versionv84711309.0019
Zte ≫ Zxv10 B860h V5d0 Firmware Versionv83011303.0049
Zte ≫ Zxv10 B860h V5d0 Firmware Versionv83011303.0051
Zte ≫ Zxv10 B860h V5d0 Firmware Versionv83011303.0053
Zte ≫ Zxv10 B860h V5d0 Firmware Versionv83011303.0063
Zte ≫ Zxv10 B860h V5d0 Firmware Versionv83011303.0069
Zte ≫ Zxv10 B866v2f Firmware Versionv86111338.0026
Zte ≫ Zxv10 B866v2f Firmware Versionv86111338.0031
Zte ≫ Zxv10 B866v2f Firmware Versionv86111338.0033
Zte ≫ Zxv10 B866v2f Firmware Versionv86111338.0035
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.083 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.7 | 2.5 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
|
134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.7 | 2.5 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
|
CWE-276 Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.