CVE-2024-11136
CVSS V2 None
CVSS V3 None
Description
The default TCL Camera application exposes a provider vulnerable to path traversal vulnerability. Malicious application can supply malicious URI path and delete arbitrary files from user’s external storage.
Overview
- CVE ID
- CVE-2024-11136
- Assigner
- CERT-PL
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-11-14T15:25:18.693Z
- Last Modified Date
- 2024-11-14T15:59:14.006Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://cert.pl/en/posts/2024/11/CVE-2024-11136/ | third-party-advisory |
https://cert.pl/posts/2024/11/CVE-2024-11136/ | third-party-advisory |
https://blog.oversecured.com/Content-Providers-and-the-potential-weak-spots-they-can-have/#path-traversal-when-using-data-from-uri | related |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-11136 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-11136 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-11-15 13:28:54 | Added to TrackCVE |