Products

Showing 4 vulnerabilities on this page

Signals CISA KEV Ransomware Nuclei
TECNO Mobile vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

PathTravelsal Vulnerability in com.talpa.hibrowser

Path Traversal in Download File Feature in com.talpa.hibrowser 2.23.1.1 on Android allows arbitrary file write via directory traversal sequences in the filename.

CWE-23Aug 5, 2026
CVSS7.5v3.1EPSS0.586%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

GeniexWebView XSS in com.transsion.aiassistantlifestyle

Cross-Site Scripting (XSS) in GeniexWebView component in Transsion AI Assistant Lifestyle application (com.transsion.aiassistantlifestyle) all versions on Android allows remote attacker to execute arbitrary JavaScript in the WebView context via crafted web_action_data URL parameter.

CWE-79Jun 2, 2026
CVSS6.1v3.1EPSS0.155%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Code Execution in AssistFeedbackService on TECNO Pova7 Pro 5G

Code execution in AssistFeedbackService of TECNO Pova7 Pro 5G on Android allows local apps to execute arbitrary code as system via command injection.

CWE-88Apr 2, 2026
CVSS7.8v3.1EPSS0.521%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Insufficient Verification of Data Authenticity vulnerability in TECNO Mobile com.Afmobi.Boomplayer allows Authentication Bypass.This issue affects com.Afmobi.Boomplayer: 7.4.63.

CWE-345Jan 6, 2026
CVSS9.8v3.1EPSS0.208%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX