Vulnerability Description
An issue found in Ego Studio SuperClean v.1.1.9 and v.1.1.5 allows an attacker to gain privileges via the update_info field of the _default_.xml file.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Egostudiogroup | Super Clean | 1.1.5 |
Related Weaknesses (CWE)
References
- http://www.egostudiogroup.com/Product
- https://apkpure.com/cn/super-clean-phone-cleaner/com.egostudio.clean/downloadProduct
- https://github.com/LianKee/SODA/blob/main/CVEs/CVE-2023-27651/CVE%20detail.mdExploitThird Party Advisory
- http://www.egostudiogroup.com/Product
- https://apkpure.com/cn/super-clean-phone-cleaner/com.egostudio.clean/downloadProduct
- https://github.com/LianKee/SODA/blob/main/CVEs/CVE-2023-27651/CVE%20detail.mdExploitThird Party Advisory
FAQ
What is CVE-2023-27651?
CVE-2023-27651 is a vulnerability with a CVSS score of 7.8 (HIGH). An issue found in Ego Studio SuperClean v.1.1.9 and v.1.1.5 allows an attacker to gain privileges via the update_info field of the _default_.xml file.
How severe is CVE-2023-27651?
CVE-2023-27651 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-27651?
Check the references section above for vendor advisories and patch information. Affected products include: Egostudiogroup Super Clean.