İçeriğe atla
Noroxi

OPPO kayıtları

oppo üreticisine ait 18 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
4
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Bug bounty kapsamı

Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.

Tüm kayıtlar

18 kayıt
  • CVE-2021-23247
    40Planlayın

    A command injection vulerability found in quick game engine allows arbitrary remote code in quick app.

    KritikCVSS 9,8İstismar yokEPSS %2

    oppo · quick app1 Nis 2022

  • CVE-2020-11830
    39İzleyin

    QualityProtect has a vulnerability to execute arbitrary system commands, affected product is com.oppo.qualityprotect V2.0.

    KritikCVSS 9,8İstismar yokEPSS %1

    oppo · qualityprotect19 Kas 2020

  • CVE-2020-11831
    39İzleyin

    OvoiceManager has system permission to write vulnerability reports for arbitrary files, affected product is com.oppo.ovoicemanager V2.0.1.

    KritikCVSS 9,8İstismar yokEPSS %1

    oppo · ovoicemanager19 Kas 2020

  • CVE-2020-11829
    39İzleyin

    Dynamic loading of services in the backup and restore SDK leads to elevated privileges, affected product is com.coloros.codebook V2.0.0_5493

    KritikCVSS 9,8İstismar yokEPSS %1

    oppo · coloros19 Kas 2020

  • CVE-2023-26310
    39İzleyin

    Command Injection In OPPO Service

    KritikCVSS 9,8İstismar yokEPSS %1

    oppo · coloros9 Ağu 2023

  • CVE-2023-26311
    39İzleyin

    A remote code execution vulnerability in the webview component of OPPO Store app.

    KritikCVSS 9,8İstismar yokEPSS %1

    oppo · oppo store10 Ağu 2023

  • CVE-2026-22070
    39İzleyin

    ColorOS Assistant Path Traversal Vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    oppo · coloros assistant30 Nis 2026

  • CVE-2021-23244
    31İzleyin

    ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelis

    YüksekCVSS 7,8İstismar yokEPSS %1

    oppo · coloros27 Ara 2021

  • CVE-2018-14996
    31İzleyin

    The Oppo F5 Android device with a build fingerprint of OPPO/CPH1723/CPH1723:7.1.1/N6F26Q/1513597833:user/release-keys contains a pre-install

    YüksekCVSS 7,8İstismar yokEPSS %1

    oppo · f5 firmware25 Nis 2019

  • CVE-2021-23243
    31İzleyin

    In Oppo's battery application, the third-party SDK provides the function of loading a third-party Provider, which can be used.

    YüksekCVSS 7,8İstismar yokEPSS %0

    oppo · oppo a1227 Eyl 2021

  • CVE-2020-11828
    30İzleyin

    In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), R

    YüksekCVSS 7,5İstismar yokEPSS %1

    oppo · coloros21 Nis 2020

  • CVE-2021-23246
    30İzleyin

    In ACE2 ColorOS11, the attacker can obtain the foreground package name through permission promotion, resulting in user information disclosur

    YüksekCVSS 7,5İstismar yokEPSS %1

    oppo · coloros11 Mar 2022

  • CVE-2024-1608
    30İzleyin

    OPPO Usercenter Credit sdk

    YüksekCVSS 7,5İstismar yokEPSS %0

    oppo · usercenter credit software development kit20 Şub 2024

  • CVE-2020-11834
    22İzleyin

    In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_vooc.c, the function proc_fastchg_fw_update_write in proc_fastchg_fw_update_write

    OrtaCVSS 5,5İstismar yokEPSS %0

    oppo · reno3 pro firmware31 Ara 2020

  • CVE-2020-11835
    22İzleyin

    In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_da9313.c, failure to check the parameter buf in the function proc_work_

    OrtaCVSS 5,5İstismar yokEPSS %0

    oppo · reno3 pro firmware31 Ara 2020

  • CVE-2020-11833
    22İzleyin

    In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_mp2650.c, the function mp2650_data_log_write in mp2650_data_log_write d

    OrtaCVSS 5,5İstismar yokEPSS %0

    oppo · reno3 pro firmware31 Ara 2020

  • CVE-2020-11832
    22İzleyin

    In functions charging_limit_current_write and charging_limit_time_write in /SM8250_Q_Master/android/vendor/oppo_charger/oppo/oppo_charger.c

    OrtaCVSS 5,5İstismar yokEPSS %0

    oppo · reno3 pro firmware31 Ara 2020

  • CVE-2020-11836
    22İzleyin

    OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability.

    OrtaCVSS 5,5İstismar yokEPSS %0

    oppo · a125 Şub 2021