Back to search
CVE-2017-3748
Published: Jun 29, 2017
Modified: Sep 16, 2024
PUBLISHED
Description
On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or "jail breaking" a device).
| Vendor | Product | Versions |
|---|---|---|
Lenovo Group Ltd. | Lenovo Vibe and Lenovo China-only Moto Mobile Phones | affected Earlier than 6.0 |
References
99295
vdb-entry
x_refsource_BID
https://support.lenovo.com/us/en/product_security/LEN-15823
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now