Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Bluboo D3 Pro Project Subscribe
Filtered by product Bluboo D3 Pro
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-15430 1 Bluboo D3 Pro Project 2 Bluboo D3 Pro, Bluboo D3 Pro Firmware 2020-08-24 2.1 LOW 5.5 MEDIUM
The Bluboo D3 Pro Android device with a build fingerprint of BLUBOO/Bluboo_D2_Pro/Bluboo_D2_Pro:7.0/NRD90M/1510370501:user/release-keys contains a pre-installed app with a package name of com.qiku.cleaner app (versionCode=2, versionName=2.0.0_VER_32516508295515) that allows other pre-installed apps to perform system properties modification via an accessible app component. This capability can be accessed by any pre-installed app on the device which can obtain signatureOrSystem permissions that are required by other other pre-installed apps that exported their capabilities to other pre-installed app.