In ACE2 ColorOS11, the attacker can obtain the foreground package name through permission promotion, resulting in user information disclosure.
References
Link | Resource |
---|---|
https://security.oppo.com/en/noticeDetail?notice_only_key=NOTICE-1502209104851247104 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2022-03-11 10:15
Updated : 2022-03-18 12:56
NVD link : CVE-2021-23246
Mitre link : CVE-2021-23246
JSON object : View
CWE
Products Affected
oppo
- coloros
- ace2