TROYANOSYVIRUS
Back to CVEs

CVE-2018-10988

N/A

Description

An issue was discovered on Diqee Diqee360 devices. A firmware update process, integrated into the firmware, starts at boot and tries to find the update folder on the microSD card. It executes code, without a digital signature, as root from the /mnt/sdcard/$PRO_NAME/upgrade.sh or /sdcard/upgrage_360/upgrade.sh pathname.

CVE Details

CVSS v3.1 ScoreN/A
Published7/5/2018
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

diqee:diqee360diqee:diqee360_firmware

Weaknesses (CWE)

CWE-347

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.