ZeroHour

CVE-2019-16242

PoC
CVSS 3.1
6.8 medium
EPSS
1%p64
Published
()
Modified
Description

On TCL Alcatel Cingular Flip 2 B9HUAH1 devices, there is an engineering application named omamock that is vulnerable to OS command injection. An attacker with physical access to the device can abuse this vulnerability to execute arbitrary OS commands as the root user via the application's UI.

Vendors
alcatelmobile
Products
cingular flip 2 firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.