CVE Database
/

CVE-2017-3748

Back to search

CVE-2017-3748

Published: Jun 29, 2017

Modified: Sep 16, 2024

PUBLISHED

Description

On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or "jail breaking" a device).

VendorProductVersions

Lenovo Group Ltd.

Lenovo Vibe and Lenovo China-only Moto Mobile Phones

affected
Earlier than 6.0

References

99295
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now