Vulnerability Details CVE-2020-36245
GramAddict through 1.2.3 allows remote attackers to execute arbitrary code because of use of UIAutomator2 and ATX-Agent. The attacker must be able to reach TCP port 7912, e.g., by being on the same Wi-Fi network.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.5%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 5.8
Products affected by CVE-2020-36245
-
cpe:2.3:a:gramaddict:gramaddict:1.0.2
-
cpe:2.3:a:gramaddict:gramaddict:1.0.3
-
cpe:2.3:a:gramaddict:gramaddict:1.0.4
-
cpe:2.3:a:gramaddict:gramaddict:1.1.0
-
cpe:2.3:a:gramaddict:gramaddict:1.1.1
-
cpe:2.3:a:gramaddict:gramaddict:1.2.0
-
cpe:2.3:a:gramaddict:gramaddict:1.2.1
-
cpe:2.3:a:gramaddict:gramaddict:1.2.2
-
cpe:2.3:a:gramaddict:gramaddict:1.2.3