In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed.
References
Link | Resource |
---|---|
https://www.unisoc.com/en_us/secy/announcementDetail/1843898270204624897 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2024-10-09 07:15
Updated : 2024-10-17 17:19
NVD link : CVE-2024-39438
Mitre link : CVE-2024-39438
CVE.ORG link : CVE-2024-39438
JSON object : View
Products Affected
unisoc
- t770
- sc7731e
- t310
- t618
- t760
- sc9832e
- s8000
- sc9863a
- t606
- t610
- t612
- t820
- t616
- android
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')