LG On Screen Phone CVE-2014-8757 Authentication Bypass Vulnerability
BID:72535
Info
LG On Screen Phone CVE-2014-8757 Authentication Bypass Vulnerability
| Bugtraq ID: | 72535 |
| Class: | Design Error |
| CVE: |
CVE-2014-8757 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 06 2015 12:00AM |
| Updated: | Feb 06 2015 12:00AM |
| Credit: | SEARCH-LAB Ltd |
| Vulnerable: |
LG On Screen Phone 4.3.009 LG On Screen Phone 4.3 |
| Not Vulnerable: |
LG On Screen Phone 4.3.010 |
Discussion
LG On Screen Phone CVE-2014-8757 Authentication Bypass Vulnerability
LG On Screen Phone is prone to an authentication-bypass vulnerability.
Attackers can exploit this issue to bypass the authentication mechanism and perform unauthorized actions within the context of the affected device.
LG On Screen Phone 4.3.009 is vulnerable; other versions may also be affected.
LG On Screen Phone is prone to an authentication-bypass vulnerability.
Attackers can exploit this issue to bypass the authentication mechanism and perform unauthorized actions within the context of the affected device.
LG On Screen Phone 4.3.009 is vulnerable; other versions may also be affected.
Exploit / POC
LG On Screen Phone CVE-2014-8757 Authentication Bypass Vulnerability
Attacker can exploit this issue with using readily available tools.
Attacker can exploit this issue with using readily available tools.
References
LG On Screen Phone CVE-2014-8757 Authentication Bypass Vulnerability
References:
References:
- LG Homepage (LG)
- LG On Screen Phone authentication bypass (CVE-2014-8757) (SEARCH-LAB Ltd)