漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Unauthorized factory reset of Infinix devices
Vulnerability Description
Infinix devices contain a pre-loaded "com.transsion.agingfunction" application, that exposes an unsecured broadcast receiver. An attacker can communicate with the receiver and force the device to perform a factory reset without any Android system permissions.
After multiple attempts to contact the vendor we did not receive any answer. We suppose this issue affects all Infinix Mobile devices.
CVSS Information
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/S:N/R:I/V:D/U:Amber
Vulnerability Type
CWE-925
Vulnerability Title
Transsion Holdings Infinix Mobile devices 安全漏洞
Vulnerability Description
Transsion Holdings Infinix Mobile devices是中国传音控股(Transsion Holdings)公司的一系列移动设备。 Transsion Holdings Infinix Mobile devices存在安全漏洞,该漏洞源于设备包含预加载的com.transsion.agingfunction应用程序,该应用程序会暴露不安全的广播接收器,攻击者可以与接收器通信并强制设备执行出厂重置。
CVSS Information
N/A
Vulnerability Type
N/A