Vulnerability Details CVE-2021-25437
Improper access control vulnerability in Tizen FOTA service prior to Firmware update JUL-2021 Release allows attackers to arbitrary code execution by replacing FOTA update file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.6%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2021-25437
-
-
cpe:2.3:o:linux:tizen:1.0
-
cpe:2.3:o:linux:tizen:2.0
-
cpe:2.3:o:linux:tizen:2.1
-
cpe:2.3:o:linux:tizen:2.2
-
cpe:2.3:o:linux:tizen:2.2.1
-
cpe:2.3:o:linux:tizen:2.3
-
cpe:2.3:o:linux:tizen:2.3.1
-
cpe:2.3:o:linux:tizen:2.4
-
cpe:2.3:o:linux:tizen:3.0
-
cpe:2.3:o:linux:tizen:4.0
-
cpe:2.3:o:linux:tizen:5.0