Description
A vulnerability was determined in Freedom Factory dGEN1 up to 20260221. Affected by this issue is the function FakeAppReceiver of the component org.ethosmobile.ethoslauncher. Executing a manipulation can lead to improper authorization. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-03-07
Score: 4.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Improper Authorization
Action: Assess Impact
AI Analysis

Impact

The vulnerability allows an attacker with local access to manipulate the FakeAppReceiver component within org.ethosmobile.ethoslauncher, enabling unauthorized operations due to improper authorization. It is classified as CWE‑266 (Improper Permission Assignment) and CWE‑285 (Authorization Bypass via Privilege Escalation). This flaw could compromise the integrity of device configuration or allow execution of privileged actions that should be restricted. The impact is limited to what the attacker can perform within the device’s local context, potentially exposing sensitive settings or enabling further local exploitation.

Affected Systems

Freedom Factory dGEN1 firmware up to the release dated 20260221 contains the vulnerable org.ethosmobile.ethoslauncher component. No official patch or update has been released, and the vendor has not responded to the disclosure.

Risk and Exploitability

The CVSS base score of 4.8 indicates moderate severity, while an EPSS score of less than 1% suggests a low likelihood of exploitation. The flaw requires local attack and has been publicly disclosed, but is not listed in the CISA KEV catalog. In environments where local physical or network access is possible, the risk remains moderate; however, the exploitation probability is low and no actively leveraged attacks are known.

Generated by OpenCVE AI on April 16, 2026 at 04:30 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Identify and isolate any devices running Freedom Factory dGEN1 firmware dated 20260221 or earlier that contain the org.ethosmobile.ethoslauncher component.
  • Remove or disable the org.ethosmobile.ethoslauncher application to eliminate the FakeAppReceiver entry point.
  • Restrict local access to the device by implementing network segmentation and disabling unused physical interfaces to reduce the attack surface.
  • Monitor device logs for unusual local activity related to the org.ethosmobile.ethoslauncher component.

Generated by OpenCVE AI on April 16, 2026 at 04:30 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 11 Mar 2026 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 09 Mar 2026 10:15:00 +0000

Type Values Removed Values Added
First Time appeared Freedom Factory
Freedom Factory dgen1
Vendors & Products Freedom Factory
Freedom Factory dgen1

Sat, 07 Mar 2026 22:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was determined in Freedom Factory dGEN1 up to 20260221. Affected by this issue is the function FakeAppReceiver of the component org.ethosmobile.ethoslauncher. Executing a manipulation can lead to improper authorization. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Title Freedom Factory dGEN1 org.ethosmobile.ethoslauncher FakeAppReceiver improper authorization
Weaknesses CWE-266
CWE-285
References
Metrics cvssV2_0

{'score': 4.3, 'vector': 'AV:L/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 4.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Freedom Factory Dgen1
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-03-11T16:28:19.167Z

Reserved: 2026-03-06T21:15:22.401Z

Link: CVE-2026-3675

cve-icon Vulnrichment

Updated: 2026-03-11T16:22:57.419Z

cve-icon NVD

Status : Deferred

Published: 2026-03-07T22:15:50.563

Modified: 2026-04-22T21:27:27.950

Link: CVE-2026-3675

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-16T04:45:16Z

Weaknesses