CVE-2018-9067
Summary
| CVE | CVE-2018-9067 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-07-13 16:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | The Lenovo Help Android app versions earlier than 6.1.2.0327 had insufficient access control for some functions which, if exploited, could have led to exposure of approximately 400 email addresses and 8,500 IMEI. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Lenovo | Lenovo Help | All | All | All | All |
| Application | Lenovo | Lenovo Help | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Lenovo Help Android App Access Control - Lenovo Support US | CONFIRM | support.lenovo.com | Mitigation, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.