Vulnerabilities > Oppo > Coloros > 11

DATE CVE VULNERABILITY TITLE RISK
2022-03-11 CVE-2021-23246 Unspecified vulnerability in Oppo Coloros 11
In ACE2 ColorOS11, the attacker can obtain the foreground package name through permission promotion, resulting in user information disclosure.
network
low complexity
oppo
5.0
2021-12-27 CVE-2021-23244 Unspecified vulnerability in Oppo Coloros 11
ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelist is not installed, attacker can disguise app with the same package name to obtain dangerous permission.
network
oppo
6.8