CVE-2024-53701
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
29/11/2024
Last modified:
29/11/2024
Description
Multiple FCNT Android devices provide the original security features such as "privacy mode" where arbitrary applications can be set not to be displayed, etc.<br />
Under certain conditions, and when an attacker can directly operate the device which its screen is unlocked by a user, the provided security features&#39; setting pages may be exposed and/or the settings may be altered, without authentication. For example, specific applications in the device configured to be hidden may be displayed and/or activated.
Impact
Base Score 3.x
3.10
Severity 3.x
LOW



