GramAddict through 1.2.3 allows remote attackers to execute arbitrary code because of use of UIAutomator2 and ATX-Agent. The attacker must be able to reach TCP port 7912, e.g., by being on the same Wi-Fi network.
References
Link | Resource |
---|---|
https://github.com/GramAddict/bot/issues/134 | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-02-17 14:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-36245
Mitre link : CVE-2020-36245
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
gramaddict
- gramaddict