Authentication Bypass Using an Alternate Path or Channel in temi Robox OS prior to120, temi Android app up to 1.3.7931 allows remote attackers to gain elevated privileges on the temi and have it automatically answer the attacker's calls, granting audio, video, and motor control via unspecified vectors.
References
Link | Resource |
---|---|
https://www.mcafee.com/blogs/other-blogs/mcafee-labs/call-an-exorcist-my-robots-possessed/ | Exploit Third Party Advisory |
https://www.robotemi.com/software-updates/ | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2020-08-07 20:15
Updated : 2024-02-28 17:47
NVD link : CVE-2020-16169
Mitre link : CVE-2020-16169
CVE.ORG link : CVE-2020-16169
JSON object : View
Products Affected
robotemi
- robox_os
CWE
CWE-287
Improper Authentication