ID

VAR-201009-0312


TITLE

Nokia E72 Keyboard Password Verification Verification Bypass Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2010-1973

DESCRIPTION

The Nokia E72 is a smartphone based on the Symbian system. The Nokia E72 keyboard lock verification password has a delay during which the screen will be unlocked, allowing the user to select and use any application. Nokia E72 is prone to an authentication-bypass vulnerability. An attacker with physical access to a locked device can exploit this issue to bypass security restrictions and access arbitrary applications without proper authorization

Trust: 0.81

sources: CNVD: CNVD-2010-1973 // BID: 43214

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2010-1973

AFFECTED PRODUCTS

vendor:nokiamodel:e72scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2010-1973

THREAT TYPE

local

Trust: 0.3

sources: BID: 43214

TYPE

Design Error

Trust: 0.3

sources: BID: 43214

PATCH

title:Nokia E72 keyboard password verification verification patch that bypasses the vulnerabilityurl:https://www.cnvd.org.cn/patchinfo/show/1004

Trust: 0.6

sources: CNVD: CNVD-2010-1973

EXTERNAL IDS

db:BIDid:43214

Trust: 0.9

db:CNVDid:CNVD-2010-1973

Trust: 0.6

sources: CNVD: CNVD-2010-1973 // BID: 43214

REFERENCES

url:http://www.securityfocus.com/archive/1/513677

Trust: 0.6

url:http://www.nokia.com

Trust: 0.3

url:/archive/1/513677

Trust: 0.3

sources: CNVD: CNVD-2010-1973 // BID: 43214

CREDITS

Ewerson Guimaraes

Trust: 0.3

sources: BID: 43214

SOURCES

db:CNVDid:CNVD-2010-1973
db:BIDid:43214

LAST UPDATE DATE

2022-05-17T02:00:13.957000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2010-1973date:2010-09-15T00:00:00
db:BIDid:43214date:2010-09-14T18:41:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2010-1973date:2010-09-15T00:00:00
db:BIDid:43214date:2010-09-14T00:00:00