Authentication Bypass Using an Alternate Path or Channel in temi Robox OS prior to120, temi Android app up to 1.3.7931 allows remote attackers to gain elevated privileges on the temi and have it automatically answer the attacker's calls, granting audio, video, and motor control via unspecified vectors.
References
Link | Resource |
---|---|
https://www.mcafee.com/blogs/other-blogs/mcafee-labs/call-an-exorcist-my-robots-possessed/ | Exploit Third Party Advisory |
https://www.robotemi.com/software-updates/ | Vendor Advisory |
Configurations
Information
Published : 2020-08-07 13:15
Updated : 2020-09-02 12:15
NVD link : CVE-2020-16169
Mitre link : CVE-2020-16169
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
robotemi
- robox_os