2 results (0.001 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

HP LIFE Android Mobile application is potentially vulnerable to escalation of privilege and/or information disclosure. La aplicación HP LIFE Android Mobile es potencialmente vulnerable a una escalada de privilegios y/o divulgación de información. • https://support.hp.com/us-en/document/ish_9393937-9393961-16/hpsbgn03870 • CWE-284: Improper Access Control •

CVSS: 9.8EPSS: 3%CPEs: 1EXPL: 2

The Imou Life com.mm.android.smartlifeiot application through 6.8.0 for Android allows Remote Code Execution via a crafted intent to an exported component. This relates to the com.mm.android.easy4ip.MainActivity activity. JavaScript execution is enabled in the WebView, and direct web content loading occurs. La aplicación Imou Life com.mm.android.smartlifeiot hasta 6.8.0 para Android permite la ejecución remota de código a través de una intención manipulada para un componente exportado. Esto se relaciona con la actividad com.mm.android.easy4ip.MainActivity. • https://github.com/actuator/cve/blob/main/CVE-2023-42470 https://github.com/actuator/imou/blob/main/imou-life-6.8.0.md https://github.com/actuator/imou/blob/main/poc.apk • CWE-94: Improper Control of Generation of Code ('Code Injection') •