Skip to main content

Vendor archive

oneplus CVEs

Beta · best-effort

15 CVEs tagged to vendor oneplus3 Critical, 3 High, 9 Medium, 0 Low, 0 Unrated.

CVE-2023-26309

Published Aug 10, 2023

A remote code execution vulnerability in the webview component of OnePlus Store app.

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2020-13626

Published Oct 9, 2020

OnePlus App Locker through 2020-10-06 allows physically proximate attackers to use Google Assistant to bypass an authorization check in order to send an SMS message when the SMS a…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-11105

Published Aug 3, 2017

The OnePlus 2 Primary Bootloader (PBL) does not validate the SBL1 partition before executing it, although it contains a certificate. This allows attackers with write access to tha…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-10370

Published May 11, 2017

An issue was discovered on OnePlus devices such as the 3T. The OnePlus OTA Updater pushes the signed-OTA image over HTTP without TLS. While it does not allow for installation of a…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1