Vulnerabilities (CVE)

Filtered by vendor Haier A6 Project
Filtered by product Haier A6 Firmware
Angry Yack Logo
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-15389 1 Haier A6 Project 2 Haier A6, Haier A6 Firmware 2024-11-21 9.3 HIGH 8.1 HIGH
The Haier A6 Android device with a build fingerprint of Haier/A6/A6:8.1.0/O11019/1534219877:userdebug/release-keys contains a pre-installed platform app with a package name of com.lovelyfont.defcontainer (versionCode=7, versionName=7.1.13). This app contains an exported service named com.lovelyfont.manager.FontCoverService that allows any app co-located on the device to supply arbitrary commands to be executed as the system user. This app cannot be disabled by the user and the attack can be perf ...

Show More