Image Exposure Vulnerability in Tecno Devices Gallery3d
CVE-2023-52275

2.1LOW

Key Information:

Vendor

Tecno

Status
Vendor
CVE Published:
31 December 2023

What is CVE-2023-52275?

The Gallery3d application on Tecno Camon X CA7 devices has a security flaw that allows unauthorized users to access and view hidden images stored in a private album. By navigating to a specific directory and guessing the correct file extensions for encrypted images, attackers can exploit this vulnerability, posing a risk to user privacy and data confidentiality.

References

CVSS V3.1

Score:
2.1
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-52275 : Image Exposure Vulnerability in Tecno Devices Gallery3d