Possible Escalation of Privilege and Information Leak in OPPO Usercenter Credit SDK
CVE-2024-1608

7.5HIGH

Key Information:

Vendor

OPPO

Vendor
CVE Published:
20 February 2024

What is CVE-2024-1608?

In the OPPO Usercenter Credit SDK, there exists a vulnerability that allows for an escalation of privilege resulting from inadequate permission checks. This issue can lead to the exposure of sensitive internal application information without requiring any user interaction. This vulnerability emphasizes the need for stringent permission controls within the SDK to safeguard against unauthorized access and potential data leaks. Developers and businesses utilizing the OPPO Usercenter Credit SDK should take immediate action to assess their implementations and enhance their security measures.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Usercenter Credit sdk /

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.