Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-23244

ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelist is not installed, attacker can disguise app with the same package name to obtain dangerous permission.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.4%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 6.8
Products affected by CVE-2021-23244
  • Oppo » Coloros » Version: 11
    cpe:2.3:o:oppo:coloros:11


Contact Us

Shodan ® - All rights reserved