Vulnerability Details CVE-2025-67264
An OS command injection vulnerability in the com.sprd.engineermode component in Doogee Note59, Note59 Pro, and Note59 Pro+ allows a local attacker to execute arbitrary code and escalate privileges via the EngineerMode ADB shell, due to incomplete patching of CVE-2025-31710
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.5%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2025-67264
-
cpe:2.3:h:doogee:note59:-
-
cpe:2.3:h:doogee:note59_pro+:-
-
cpe:2.3:h:doogee:note59_pro:-
-
cpe:2.3:o:doogee:note59_firmware:-
-
cpe:2.3:o:doogee:note59_pro+_firmware:-
-
cpe:2.3:o:doogee:note59_pro_firmware:-