CVE Vulnerabilities

CVE-2023-41784

Improper Privilege Management

Published: Jan 04, 2024 | Modified: Nov 21, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Permissions and Access Control Vulnerability in ZTE Red Magic 8 Pro

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Redmagic_8_pro_firmware Zte gen_cn_nx729jv1.0.0b21mr (including) gen_cn_nx729jv1.0.0b21mr (including)

Potential Mitigations

References