Loading
There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, non-privileged application can perform functions that are protected with signature/privilege-level permissions. Exploitation of this vulnerability could clear personal data and applications on the user's device, affecting device operation.
Use CWE-276, Zte vendor hub and Up T2 4k Firmware product page to widen CVE-2023-25645 into its surrounding weakness, vendor, and product context.