In engineermode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed.
History

Tue, 10 Jun 2025 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google android
Unisoc
Unisoc s8000
Unisoc sc9863a
Unisoc t606
Unisoc t612
Unisoc t616
Unisoc t750
Unisoc t760
Unisoc t765
Unisoc t770
Unisoc t820
Unisoc t8300
Unisoc t9300
CPEs cpe:2.3:h:unisoc:s8000:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:sc9863a:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t606:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t612:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t616:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t750:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t760:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t765:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t770:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t820:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t8300:-:*:*:*:*:*:*:*
cpe:2.3:h:unisoc:t9300:-:*:*:*:*:*:*:*
cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:*
Vendors & Products Google
Google android
Unisoc
Unisoc s8000
Unisoc sc9863a
Unisoc t606
Unisoc t612
Unisoc t616
Unisoc t750
Unisoc t760
Unisoc t765
Unisoc t770
Unisoc t820
Unisoc t8300
Unisoc t9300

Tue, 03 Jun 2025 16:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-77
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 03 Jun 2025 06:00:00 +0000

Type Values Removed Values Added
Description In engineermode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed.
References
Metrics cvssV3_1

{'score': 5.9, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Unisoc

Published: 2025-06-03T05:50:51.239Z

Updated: 2025-06-03T15:19:39.406Z

Reserved: 2025-04-01T08:28:54.048Z

Link: CVE-2025-31710

cve-icon Vulnrichment

Updated: 2025-06-03T15:17:58.911Z

cve-icon NVD

Status : Analyzed

Published: 2025-06-03T06:15:27.310

Modified: 2025-06-10T15:15:23.847

Link: CVE-2025-31710

cve-icon Redhat

No data.