CVE-2023-30942
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2023-30942 is a vulnerability affecting telephony services where a missing permission check has been identified. This issue allows unauthorized access to local information without the need for additional execution privileges. An attacker could potentially exploit this vulnerability to gain insights into the system, increasing the risk of further compromise. The exact impact of this vulnerability depends on the specific telephony service and its configuration, but it poses a significant security risk that should be addressed promptly. Organizations are advised to apply patches or update their configurations to mitigate this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Android