Vulnerabilidades en OPPO
12 resultadosAnálisis Vexday
A OPPO apresenta 11 vulnerabilidades catalogadas, com 1 crítica e 3 divulgadas nos últimos 90 dias, indicando exposição moderada e contínua. Nenhuma das vulnerabilidades está sob ataque ativo (KEV), reduzindo a urgência operacional imediata. A fraqueza dominante em autenticação (CWE-287) sugere riscos concentrados em mecanismos de acesso, requerendo validação de controles de identidade nos produtos afetados.
CVE-2020-11828—In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), REPSS 1.2%CVE-2023-26310HIGHCommand Injection In OPPO ServiceEPSS 1.0%CVE-2024-1610HIGHOPPO Store app include remote account token hijacking and sensitive information leakageEPSS 0.7%CVE-2023-26309HIGHA remote code execution vulnerability in the webview componentEPSS 0.6%CVE-2023-26311HIGH A remote code execution vulnerability in the webview component of OPPO Store app.EPSS 0.6%CVE-2024-1609HIGHOPPO Store APP has a WebView component privilege escalation vulnerability.EPSS 0.5%CVE-2024-1608CRITICALOPPO Usercenter Credit sdkEPSS 0.5%CVE-2025-27388HIGHArbitrary URL Loading in WebView Leading to Token Leakage RiskEPSS 0.4%CVE-2025-27387HIGHOPPO Clone Phone uses weak WPA passphrase as only means of securityEPSS 0.2%CVE-2026-22070HIGHColorOS Assistant Path Traversal VulnerabilityEPSS 0.2%CVE-2026-22078HIGHO+ Connect's lack of authentication for IPC channels led to a local privilege escalation vulnerability.EPSS 0.1%CVE-2026-22077MEDIUMSensitive Information Disclosure Vulnerability Caused by Trusted Domain Bypass in OPPO WalletEPSS 0.1%