|
247271
|
4.7 |
MEDIUM
Local
|
vivo
|
v7_firmware
|
The Vivo V7 device with a build fingerprint of vivo/1718/1718:7.1.2/N2G47H/compil11021857:user/release-keys allows any app co-located on the device to set system properties as the com.android.phone u…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2018-15002
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247272
|
5.5 |
MEDIUM
Local
|
vivo
|
v7_firmware
|
The Vivo V7 Android device with a build fingerprint of vivo/1718/1718:7.1.2/N2G47H/compil11021857:user/release-keys contains a platform app with a package name of com.vivo.bsptest (versionCode=1, ver…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2018-15001
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247273
|
6.8 |
MEDIUM
Physics
|
leagoo
|
p1_firmware
|
The Leagoo P1 Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/release-keys contains a hidden root privilege escalation capability to achieve …
|
CWE-78
OS Command
|
CVE-2018-14998
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247274
|
4.7 |
MEDIUM
Local
|
zteusa
|
zte_blade_vantage_firmware zte_blade_spark_firmware zte_zmax_pro_firmware zte_zmax_champ_firmware
|
The ZTE Blade Vantage Android device with a build fingerprint of ZTE/Z839/sweet:7.1.1/NMF26V/20180120.095344:user/release-keys, the ZTE Blade Spark Android device with a build fingerprint of ZTE/Z971…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2018-14995
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247275
|
5.5 |
MEDIUM
Local
|
asus
|
zenfone_3_max_firmware
|
The ASUS ZenFone 3 Max Android device with a build fingerprint of asus/US_Phone/ASUS_X008_1:7.0/NRD90M/US_Phone-14.14.1711.92-20171208:user/release-keys contains a pre-installed platform app with a p…
|
NVD-CWE-noinfo
|
CVE-2018-14992
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247276
|
7.5 |
HIGH
Network
|
mxq_project
|
mxq_tv_box_firmware
|
The MXQ TV Box 4.4.2 Android device with a build fingerprint of MBX/m201_N/m201_N:4.4.2/KOT49H/20160106:user/test-keys contains the Android framework with a package name of android (versionCode=19, v…
|
CWE-20
Improper Input Validation
|
CVE-2018-14988
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247277
|
7.1 |
HIGH
Local
|
mxq_project
|
mxq_tv_box_firmware
|
The MXQ TV Box 4.4.2 Android device with a build fingerprint of MBX/m201_N/m201_N:4.4.2/KOT49H/20160106:user/test-keys contains the Android framework with a package name of android (versionCode=19, v…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-14987
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247278
|
7.5 |
HIGH
Network
|
leagoo
|
z5c_firmware
|
The Leagoo Z5C Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/release-keys contains a pre-installed app with a package name of com.android.m…
|
CWE-200
Information Exposure
|
CVE-2018-14986
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247279
|
7.1 |
HIGH
Local
|
leagoo
|
z5c_firmware
|
The Leagoo Z5C Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/release-keys contains a pre-installed platform app with a package name of com.…
|
NVD-CWE-noinfo CWE-862
Missing Authorization
|
CVE-2018-14985
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247280
|
7.5 |
HIGH
Network
|
leagoo
|
z5c_firmware
|
The Leagoo Z5C Android device with a build fingerprint of sp7731c_1h10_32v4_bird:6.0/MRA58K/android.20170629.214736:user/release-keys contains a pre-installed app with a package name of com.android.m…
|
CWE-200
Information Exposure
|
CVE-2018-14984
|
2024-11-21 12:50 |
2018-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|