Vulnerabilidades em Motorola

57 resultados
Análise Vexday

Com 56 CVEs catalogadas, o histórico de vulnerabilidades da Motorola apresenta uma taxa de exploração ativa abaixo da média geral do catálogo CISA KEV, sem registros confirmados de exploração em curso. Ainda assim, 7 falhas de severidade crítica merecem atenção, e a CVE-2021-3577 se destaca com escore EPSS de aproximadamente 0,60 — o mais elevado do conjunto —, indicando probabilidade relevante de exploração mesmo sem confirmação de uso ativo no momento. O tipo de falha mais recorrente, CWE-926 (exportação imprópria de componentes em aplicações Android), sugere uma superfície de ataque concentrada em controle de acesso a componentes de aplicativos. A ausência de PoCs públicas reduz o risco imediato de reprodução massiva, mas as vulnerabilidades críticas devem ser priorizadas em ciclos de atualização de firmware e software.

CVE-2024-3108MEDIUM An implicit intent vulnerability was reported for Motorola’s Time Weather Widget application that could allow a local application to acquirEPSS 0.2%CVE-2023-41818MEDIUM An improper use of the SD card for sensitive data vulnerability was reported in the Motorola Device Help application that could allow a locEPSS 0.1%CVE-2023-41821MEDIUM A an improper export vulnerability was reported in the Motorola Setup application that could allow a local attacker to read sensitive user EPSS 0.1%CVE-2023-41820MEDIUM An implicit intent vulnerability was reported in the Motorola Ready For application that could allow a local attacker to read information aEPSS 0.1%CVE-2025-1700HIGHA DLL hijacking vulnerability was reported in the Motorola Software Fix (Rescue and Smart Assistant) installer that could allow a local attaEPSS 0.1%CVE-2024-3480LOWAn Implicit intent vulnerability was reported in the Motorola framework that could allow an attacker to read telephony-related data.EPSS 0.1%CVE-2023-41824LOW An implicit intent vulnerability was reported in the Motorola Phone Calls application that could allow a local attacker to read the callingEPSS 0.1%CVE-2023-41817LOWAn improper export vulnerability was reported in the Motorola Phone Calls application that could allow a local attacker to read unauthorizedEPSS 0.1%CVE-2024-3479LOW An improper export vulnerability was reported in the Motorola Enterprise MotoDpms Provider (com.motorola.server.enterprise.MotoDpmsProviderEPSS 0.1%CVE-2023-41819MEDIUM A PendingIntent hijacking vulnerability was reported in the Motorola Face Unlock application that could allow a local attacker to access unEPSS 0.1%CVE-2023-41822MEDIUM An improper export vulnerability was reported in the Motorola Interface Test Tool application that could allow a malicious local applicatioEPSS 0.1%CVE-2023-41816MEDIUM An improper export vulnerability was reported in the Motorola Services Main application that could allow a local attacker to write to a locEPSS 0.1%CVE-2025-1698LOWNull pointer exception vulnerabilities were reported in the fingerprint sensor service that could allow a local attacker to cause a denial oEPSS 0.1%CVE-2025-1699LOWAn incorrect default permissions vulnerability was reported in the MotoSignature application that could result in unauthorized access.EPSS 0.1%CVE-2025-2818MEDIUMA vulnerability was reported in version 1.0 of the Bluetooth Transmission Alliance protocol adopted by Motorola Smart Connect Android ApplicEPSS 0.1%CVE-2021-3789MEDIUMAn information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with physEPSS 0.1%CVE-2026-18058HIGHThe mobile Smart Connect dashboard UI was subject to manipulation by 3rd party apps. When paired with a phishing attack, this manipulation cEPSS 0.1%