CVE-2024-11136 Information
Nov 15, 2024
cve
Description
The default TCL Camera application exposes a provider vulnerable to path traversal vulnerability. Malicious application can supply malicious URI path and delete arbitrary files from user’s external storage.
Reference
https://cert.pl/en/posts/2024/11/CVE-2024-11136/ https://cert.pl/posts/2024/11/CVE-2024-11136/ https://blog.oversecured.com/Content-Providers-and-the-potential-weak-spots-they-can-have/#path-traversal-when-using-data-from-uri
Share on: