Back to search
CVE-2021-41849
Published: Mar 11, 2022
Modified: Aug 4, 2024
PUBLISHED
Description
An issue was discovered in Luna Simo PPR1.180610.011/202001031830. It sends the following Personally Identifiable Information (PII) in plaintext using HTTP to servers located in China: user's list of installed apps and device International Mobile Equipment Identity (IMEI). This PII is transmitted to log.skyroam.com.cn using HTTP, independent of whether the user uses the Simo software.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://simowireless.com/
x_refsource_MISC
https://www.kryptowire.com/android-firmware-2022/
x_refsource_MISC
https://athack.com/session-details/401
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now