CVE-2019-16242
PoC —CVSS 3.1
6.8 medium
EPSS
1%p64
Published
()
Modified
Description
On TCL Alcatel Cingular Flip 2 B9HUAH1 devices, there is an engineering application named omamock that is vulnerable to OS command injection. An attacker with physical access to the device can abuse this vulnerability to execute arbitrary OS commands as the root user via the application's UI.
- Vendors
- alcatelmobile
- Products
- cingular flip 2 firmware
- Weakness
- CWE-78
- Vector
- CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.