Lucene search

K
cve[email protected]CVE-2020-27403
HistoryNov 10, 2020 - 6:15 p.m.

CVE-2020-27403

2020-11-1018:15:12
CWE-200
web.nvd.nist.gov
31
3
cve-2020-27403
tcl technology group corporation
android smart tv
vulnerability
information disclosure
network security
web server

3.3 Low

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:A/AC:L/Au:N/C:P/I:N/A:N

6.5 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

6.1 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.9%

A vulnerability in the TCL Android Smart TV series V8-R851T02-LF1 V295 and below and V8-T658T01-LF1 V373 and below by TCL Technology Group Corporation allows an attacker on the adjacent network to arbitrarily browse and download sensitive files over an insecure web server running on port 7989 that lists all files & directories. An unprivileged remote attacker on the adjacent network, can download most system files, leading to serious critical information disclosure. Also, some TV models and/or FW versions may expose the webserver with the entire filesystem accessible on another port. For example, nmap scan for all ports run directly from the TV model U43P6046 (Android 8.0) showed port 7983 not mentioned in the original CVE description, but containing the same directory listing of the entire filesystem. This webserver is bound (at least) to localhost interface and accessible freely to all unprivileged installed apps on the Android such as a regular web browser. Any app can therefore read any files of any other apps including Android system settings including sensitive data such as saved passwords, private keys etc.

Affected configurations

NVD
Node
tcl32s330_firmwareRange<v8-r851t10-lf1v091
AND
tcl32s330Match-
Node
tcl40s330_firmwareRange<v8-r851t10-lf1v091
AND
tcl40s330Match-
Node
tcl43s434_firmwareRange<v8-r851t02-lf1v440
AND
tcl43s434Match-
Node
tcl50s434_firmwareRange<v8-r851t02-lf1v440
AND
tcl50s434Match-
Node
tcl55s434_firmwareRange<v8-r851t02-lf1v440
AND
tcl55s434Match-
Node
tcl65s434_firmwareRange<v8-r851t02-lf1v440
AND
tcl65s434Match-
Node
tcl75s434_firmwareRange<v8-r851t02-lf1v440
AND
tcl75s434Match-

Social References

More

3.3 Low

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:A/AC:L/Au:N/C:P/I:N/A:N

6.5 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

6.1 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.9%

Related for CVE-2020-27403