Description
There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application can perform functions that are protected with signature/privilege-level permissions. Exploitation of this vulnerability could clear personal data and applications on the user's device, affecting device operation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-29584 | There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application can perform functions that are protected with signature/privilege-level permissions. Exploitation of this vulnerability could clear personal data and applications on the user's device, affecting device operation. |
References
History
Thu, 12 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: zte
Published:
Updated: 2024-12-12T17:14:29.564Z
Reserved: 2023-02-09T00:00:00.000Z
Link: CVE-2023-25645
Updated: 2024-08-02T11:25:19.247Z
Status : Modified
Published: 2023-06-16T19:15:14.527
Modified: 2024-12-12T18:15:22.180
Link: CVE-2023-25645
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD