CVE Vulnerabilities

CVE-2023-41784

Improper Privilege Management

Published: Jan 04, 2024 | Modified: Nov 21, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Permissions and Access Control Vulnerability in ZTE Red Magic 8 Pro

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

NameVendorStart VersionEnd Version
Redmagic_8_pro_firmwareZtegen_cn_nx729jv1.0.0b21mr (including)gen_cn_nx729jv1.0.0b21mr (including)

Potential Mitigations

References