CVE-2021-39635 PUBLISHED CVSS 9.100000381469727 CRITICAL

ims_ex is a vendor system service used to manage VoLTE in unisoc devices?But it does not verify the caller's permissions?so that normal apps (No phone permissions) can obtain some VoLTE sensitive information and manage VoLTE calls.Product: AndroidVersions: Android SoCAndroid ID: A-206492634

EPSS 0.11% · 29.8th percentile

Risk Scores

CVSS v3.1
9.100000381469727
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
EPSS Score
0.11%
29.8th percentile

Affected Products

VendorProductVersions
n/aAndroidAndroid SoC
googleandroid

Timeline

References

Open in Interactive Console →