Vulnerability Name: | CVE-2022-39109 | ||||||
Assigned: | 2022-10-14 | ||||||
Published: | 2022-10-14 | ||||||
Updated: | 2022-10-18 | ||||||
Summary: | In Music service, there is a missing permission check. This could lead to elevation of privilege in Music service with no additional execution privileges needed. | ||||||
CVSS v3 Severity: | 7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
| ||||||
CVSS v2 Severity: | 6.8 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C)
| ||||||
Vulnerability Type: | CWE-862 | ||||||
References: | Source: MITRE Type: CNA CVE-2022-39109 Source: MISC Type: Vendor Advisory https://www.unisoc.com/en_us/secy/announcementDetail/1575654905820020738 | ||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||
BACK |