Authorization Bypass Vulnerability in OnePlus App Locker
CVE-2020-13626
4.6MEDIUM
What is CVE-2020-13626?
A security vulnerability exists in the OnePlus App Locker that allows an attacker with physical access to bypass the application's authorization checks. This loophole enables the use of Google Assistant to send SMS messages even when the SMS application is locked, posing a potential privacy risk to users. The vulnerability affects versions of the OnePlus App Locker released before October 6, 2020, raising concerns over the integrity of user authentication methods employed in the application.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
4.6
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
