Vulnerability Description
In OPPO Usercenter Credit SDK, there's a possible escalation of privilege due to loose permission check, This could lead to application internal information leak w/o user interaction.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Oppo | Usercenter Credit Software Development Kit | - |
Related Weaknesses (CWE)
References
- https://security.oppo.com/en/noticeDetail?notice_only_key=NOTICE-175986761195455Vendor Advisory
- https://security.oppo.com/en/noticeDetail?notice_only_key=NOTICE-175986761195455Vendor Advisory
FAQ
What is CVE-2024-1608?
CVE-2024-1608 is a vulnerability with a CVSS score of 9.1 (CRITICAL). In OPPO Usercenter Credit SDK, there's a possible escalation of privilege due to loose permission check, This could lead to application internal information leak w/o user interaction.
How severe is CVE-2024-1608?
CVE-2024-1608 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-1608?
Check the references section above for vendor advisories and patch information. Affected products include: Oppo Usercenter Credit Software Development Kit.