CVE-2024-4988

HIGH

TECNO com.transsion.videocallenhancer 1.1.9.973 - Unauthenticated Private File Leakage

Title source: llm
STIX 2.1

Description

The mobile application (com.transsion.videocallenhancer) interface has improper permission control, which can lead to the risk of private file leakage.

Scores

CVSS v3 7.5
EPSS 0.0042
EPSS Percentile 33.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-269 CWE-284
Status published
Products (1)
TECNO/com.transsion.videocallenhancer 1.1.9.973
Published May 21, 2024
Tracked Since Feb 18, 2026