Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-31710


In engineermode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed.


Published

2025-06-03T06:15:27.310

Last Modified

2025-06-10T15:15:23.847

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.9 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-77

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System google android 13.0 Yes
Operating System google android 14.0 Yes
Operating System google android 15.0 Yes
Hardware unisoc s8000 - No
Hardware unisoc sc9863a - No
Hardware unisoc t606 - No
Hardware unisoc t612 - No
Hardware unisoc t616 - No
Hardware unisoc t750 - No
Hardware unisoc t760 - No
Hardware unisoc t765 - No
Hardware unisoc t770 - No
Hardware unisoc t820 - No
Hardware unisoc t8300 - No
Hardware unisoc t9300 - No

References