In cmd services, there is a OS command injection issue due to missing permission check. This could lead to local escalation of privilege with system execution privileges needed.
References
Link | Resource |
---|---|
https://www.unisoc.com/en_us/secy/announcementDetail/1621031430231134210 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2023-02-11 20:15
Updated : 2023-02-21 11:07
NVD link : CVE-2022-47339
Mitre link : CVE-2022-47339
JSON object : View
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Products Affected
- android
unisoc
- t760
- t820
- s8000
- sc9832e
- t606
- t612
- sc7731e
- t310
- t610
- t770
- t616
- t618
- sc9863a