HIGH · 7.5

CVE-2020-5571

SHARP AQUOS series (AQUOS SH-M02 build number 01.00.05 and earlier, AQUOS SH-RM02 build number 01.00.04 and earlier, AQUOS mini SH-M03 build number 01.00.04 and earlier, AQUOS Keitai SH-N01 build numb...

Vulnerability Description

SHARP AQUOS series (AQUOS SH-M02 build number 01.00.05 and earlier, AQUOS SH-RM02 build number 01.00.04 and earlier, AQUOS mini SH-M03 build number 01.00.04 and earlier, AQUOS Keitai SH-N01 build number 01.00.01 and earlier, AQUOS L2 (UQ mobile/J:COM) build number 01.00.05 and earlier, AQUOS sense lite SH-M05 build number 03.00.04 and earlier, AQUOS sense (UQ mobile) build number 03.00.03 and earlier, AQUOS compact SH-M06 build number 02.00.02 and earlier, AQUOS sense plus SH-M07 build number 02.00.02 and earlier, AQUOS sense2 SH-M08 build number 02.00.05 and earlier, and AQUOS sense2 (UQ mobile) build number 02.00.06 and earlier) allow an attacker to obtain the sensitive information of the device via malicious applications installed on the device.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
SharpAquos Sh-M02 Firmware<= 01.00.05
SharpAquos Sh-M02-
SharpAquos Sh-Rm02 Firmware<= 01.00.04
SharpAquos Sh-Rm02-
SharpAquos Mini Sh-M03 Firmware<= 01.00.04
SharpAquos Mini Sh-M03-
SharpAquos L2 Firmware<= 01.00.05
SharpAquos L2-
SharpAquos Sense Lite Sh-M05 Firmware<= 03.00.04
SharpAquos Sense Lite Sh-M05-
SharpAquos Sense Firmware<= 03.00.03
SharpAquos Sense-
SharpAquos Compact Sh-M06 Firmware<= 02.00.02
SharpAquos Compact Sh-M06-
SharpAquos Sense Plus Sh-M07 Firmware<= 0.2.00.02
SharpAquos Sense Plus Sh-M07-
SharpAquos Sense2 Sh-M08 Firmware<= 02.00.05
SharpAquos Sense2 Sh-M08-
SharpAquos Sense2 Firmware<= 02.00.06
SharpAquos Sense2-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-5571?

CVE-2020-5571 is a vulnerability with a CVSS score of 7.5 (HIGH). SHARP AQUOS series (AQUOS SH-M02 build number 01.00.05 and earlier, AQUOS SH-RM02 build number 01.00.04 and earlier, AQUOS mini SH-M03 build number 01.00.04 and earlier, AQUOS Keitai SH-N01 build numb...

How severe is CVE-2020-5571?

CVE-2020-5571 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-5571?

Check the references section above for vendor advisories and patch information. Affected products include: Sharp Aquos Sh-M02 Firmware, Sharp Aquos Sh-M02, Sharp Aquos Sh-Rm02 Firmware, Sharp Aquos Sh-Rm02, Sharp Aquos Mini Sh-M03 Firmware.