MediaTek MT2737
cpe:2.3:h:mediatek:mt2735:*:*:*:*:*:*:*, +1 more
A permission bypass vulnerability has been identified in the MediaTek Modem due to improper certificate validation. This issue could lead to remote information disclosure if a user equipment (UE) connects to a rogue base station controlled by an attacker. The vulnerability requires user execution privileges and user interaction for exploitation.
Exploitation of this vulnerability could result in unauthorized remote information disclosure.
MediaTek has issued a patch for this vulnerability, which can be applied by device manufacturers. Instructions for applying the patch are available through MediaTek's official channels.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.