Vulnerabilities > CVE-2023-25647 - Incorrect Authorization vulnerability in ZTE products

047910
CVSS 3.3 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
NONE
local
low complexity
zte
CWE-863

Summary

There is a permission and access control vulnerability in some ZTE mobile phones. Due to improper access control, applications in mobile phone could monitor the touch event.

Common Weakness Enumeration (CWE)