CVE-2025-27387
BaseFortify
Publication date: 2025-06-23
Last updated on: 2025-06-23
Assigner: OPPO Mobile Telecommunication Corp., Ltd.
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-200 | The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability occurs in OPPO Clone Phone where the device uses a weak password for its WiFi hotspot feature that is used to transfer files. Because of the weak password, unauthorized parties can potentially connect to the hotspot and gain access to information being transferred, leading to information disclosure.
How can this vulnerability impact me? :
The vulnerability can lead to unauthorized access to sensitive information being transferred over the WiFi hotspot. This can result in information disclosure, potentially exposing personal or confidential data to attackers without the user's knowledge.