CyberSec.Space Logo
返回 CVE 浏览器

CVE-2018-16267

HIGH
8.1
CVSS Severity Score
EPSS Score0.0800%
EPSS Percentile41.37th
Published2020年1月22日
Last Modified2024年11月21日

Vulnerability Description

The system-popup system service in Tizen allows an unprivileged process to perform popup-related system actions, due to improper D-Bus security policy configurations. Such actions include the triggering system poweroff menu, and prompting a popup with arbitrary strings. This affects Tizen before 5.0 M1, and Tizen-based firmwares including Samsung Galaxy Gear series before build RE2.

Affected Platforms (CPE)

💻
Linux

Tizen

= 1.0
💻
Linux

Tizen

= 1.0
💻
Linux

Tizen

= 2.0
💻
Linux

Tizen

= 2.1
💻
Linux

Tizen

= 2.2
💻
Linux

Tizen

= 2.2.1
💻
Linux

Tizen

= 2.3
💻
Linux

Tizen

= 2.3.1
💻
Linux

Tizen

= 2.4
💻
Linux

Tizen

= 3.0
💻
Linux

Tizen

= 3.0
💻
Linux

Tizen

= 3.0
💻
Linux

Tizen

= 4.0
💻
Linux

Tizen

= 4.0
💻
Linux

Tizen

= 4.0
💻
Linux

Tizen

= 5.0

References & Advisories

相关漏洞威胁

CVE-2018-16267 Detail & Impact Analysis | CVSS 8.1 (HIGH) | Cyber-Sec.Space | Cyber-Sec.Space