CVE-2018-11922 PUBLISHED CVSS 7.5 HIGH

Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user.

EPSS 0.12% · 31.5th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.12%
31.5th percentile

Affected Products

VendorProductVersions
qualcommsda660_firmware
qualcommsd_429_firmware
qualcomm215_firmware
qualcommsd_427_firmware
qualcommmdm9650_firmware
qualcommsd_632_firmware
qualcommsd_850_firmware
qualcommsd_625_firmware
qualcommmdm9607_firmware
qualcommsdx20_firmware
qualcommmdm9206_firmware
qualcommsd_439_firmware
qualcommsd_845_firmware
qualcommsd_430_firmware
qualcommmdm9640_firmware
qualcommsd_212_firmware
Qualcomm, Inc.SnapdragonSDM439, SDX20, SD 845 / SD 850
qualcommsd_425_firmware
qualcommsd_450_firmware
qualcommsd_205_firmware

…and 3 more

Timeline

References

Open in Interactive Console →