First published: Thu Aug 17 2023(Updated: )
There is a permission and access control vulnerability in some ZTE mobile phones. Due to improper access control, applications in mobile phone could monitor the touch event.
Credit: psirt@zte.com.cn psirt@zte.com.cn
Affected Software | Affected Version | How to fix |
---|---|---|
Zte Axon 30 Firmware | <3.0.0b06 | |
Zte Axon 30 | ||
Zte Axon 40 Pro Firmware | <1.0.0b16 | |
Zte Axon 40 Pro | ||
Zte Axon 40 Ultra Firmware | <2.0.0b17 | |
Zte Axon 40 Ultra | ||
Zte Nubia Z50 Firmware | <1.0.0b19mr | |
Zte Nubia Z50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-25647 is a permission and access control vulnerability found in some ZTE mobile phones.
CVE-2023-25647 affects ZTE Axon 30 Firmware up to version 3.0.0b06.
No, ZTE Axon 30 is not affected by CVE-2023-25647.
CVE-2023-25647 has a severity rating of 3.3 (medium).
To fix CVE-2023-25647 in ZTE Axon 30 Firmware, update to a version beyond 3.0.0b06.