No advisories yet.
Solution
Update your Motorola Phone to software versions with a Security Patch Level of 2026-04-05 or later.
Workaround
No workaround given by the vendor.
Tue, 19 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 19 May 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Permission Escalation via Factory Test Component | |
| Weaknesses | CWE-284 |
Tue, 19 May 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper authentication vulnerability was discovered in the Motorola Factory Test component (com.motorola.motocit). The application contained a reference to a writable file descriptor in external storage which could be used by third party apps running on the device to open a TCP server, exposing sensitive permissions and data. This could allow a local attacker to bypass permission checks and access protected device settings. | |
| First Time appeared |
Motorola
Motorola phones |
|
| CPEs | cpe:2.3:a:motorola:phones:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Motorola
Motorola phones |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2026-05-19T16:39:42.750Z
Reserved: 2026-04-08T14:38:14.415Z
Link: CVE-2026-5804
Updated: 2026-05-19T16:38:20.549Z
Status : Awaiting Analysis
Published: 2026-05-19T16:16:22.413
Modified: 2026-05-19T17:57:25.143
Link: CVE-2026-5804
No data.
OpenCVE Enrichment
Updated: 2026-05-19T18:00:12Z