CVE-2025-50862 Information

Description

The Lotus Cars Android app (com.lotus.carsdomestic.intl) 1.2.8 has allowBackup=true set in its manifest allowing data exfiltration via ADB backup on rooted or debug-enabled devices. This presents a risk of user data exposure.

Reference

http://comlotuscarsdomesticintl.com http://lotus.com https://github.com/JackSessions/Jack-Sessions-CVEs/tree/main

CNNVD-202508-1774 (Published: 2025-08-14)

Share on: