← Volver a CVEs
CVE-2022-38698
HIGH7.8
Descripcion
In messaging service, there is a missing permission check. This could lead to elevation of privilege in contacts service with no additional execution privileges needed.
Detalles CVE
Puntuacion CVSS v3.17.8
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueLOCAL
ComplejidadLOW
Privilegios requeridosLOW
Interaccion usuarioNONE
Publicado10/14/2022
Ultima modificacion5/15/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
google:androidunisoc:s8000unisoc:sc7731eunisoc:sc9832eunisoc:sc9863aunisoc:t310unisoc:t606unisoc:t610unisoc:t612unisoc:t616unisoc:t618unisoc:t760unisoc:t770unisoc:t820
Debilidades (CWE)
CWE-862CWE-862
Referencias
https://www.unisoc.com/en_us/secy/announcementDetail/1575654905820020738(security@unisoc.com)
https://www.unisoc.com/en_us/secy/announcementDetail/1575654905820020738(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.