CVE-2014-6602

Microsoft Asha OS - Privilege Escalation

Title source: llm
STIX 2.1

Description

Microsoft Asha OS on the Microsoft Mobile Nokia Asha 501 phone 14.0.4 allows physically proximate attackers to bypass the lock-screen protection mechanism, and read or modify contact information or dial arbitrary telephone numbers, by tapping the SOS Option and then tapping the Green Call Option.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/96195

Scores

EPSS 0.0219
EPSS Percentile 80.6%

Details

CWE
CWE-264
Status published
Products (2)
microsoft/nokia_asha_501
microsoft/nokia_asha_501_software 14.0.4
Published Sep 22, 2014
Tracked Since Feb 18, 2026