Oppo
Products
28- 6 CVEs
- 4 CVEs
- 4 CVEs
- 4 CVEs
- 3 CVEs
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 1 CVE
- 0 CVEs
- 0 CVEs
- 0 CVEs
- 0 CVEs
- 0 CVEs
Recent CVEs
25| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-1610 | Cri | 0.64 | 9.8 | 0.01 | Dec 18, 2024 | In OPPO Store APP, there's a possible escalation of privilege due to improper input validation. | ||
| CVE-2021-23247 | Cri | 0.64 | 9.8 | 0.02 | Apr 1, 2022 | A command injection vulerability found in quick game engine allows arbitrary remote code in quick app. Allows remote attacke0rs to gain arbitrary code execution in quick game engine | ||
| CVE-2020-11831 | Cri | 0.64 | 9.8 | 0.01 | Nov 19, 2020 | OvoiceManager has system permission to write vulnerability reports for arbitrary files, affected product is com.oppo.ovoicemanager V2.0.1. | ||
| CVE-2020-11830 | Cri | 0.64 | 9.8 | 0.01 | Nov 19, 2020 | QualityProtect has a vulnerability to execute arbitrary system commands, affected product is com.oppo.qualityprotect V2.0. | ||
| CVE-2020-11829 | Cri | 0.64 | 9.8 | 0.01 | Nov 19, 2020 | Dynamic loading of services in the backup and restore SDK leads to elevated privileges, affected product is com.coloros.codebook V2.0.0_5493e40_200722. | ||
| CVE-2024-1608 | Cri | 0.59 | 9.1 | 0.00 | Feb 20, 2024 | In OPPO Usercenter Credit SDK, there's a possible escalation of privilege due to loose permission check, This could lead to application internal information leak w/o user interaction. | ||
| CVE-2024-1609 | Hig | 0.57 | — | 0.00 | Dec 25, 2024 | In OPPOStore iOS App, there's a possible escalation of privilege due to improper input validation. | ||
| CVE-2025-27388 | Hig | 0.54 | — | 0.00 | Aug 14, 2025 | Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user tokens. | ||
| CVE-2021-23244 | Hig | 0.51 | 7.8 | 0.01 | Dec 27, 2021 | ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelist is not installed, attacker can disguise app with the same package name to obtain dangerous permission. | ||
| CVE-2021-23243 | Hig | 0.51 | 7.8 | 0.00 | Sep 27, 2021 | In Oppo's battery application, the third-party SDK provides the function of loading a third-party Provider, which can be used. | ||
| CVE-2018-14996 | Hig | 0.51 | 7.8 | 0.01 | Apr 25, 2019 | The Oppo F5 Android device with a build fingerprint of OPPO/CPH1723/CPH1723:7.1.1/N6F26Q/1513597833:user/release-keys contains a pre-installed platform app with a package name of com.dropboxchmod (versionCode=1, versionName=1.0) that contains an exported service named… | ||
| CVE-2021-23246 | Hig | 0.49 | 7.5 | 0.01 | Mar 11, 2022 | In ACE2 ColorOS11, the attacker can obtain the foreground package name through permission promotion, resulting in user information disclosure. | ||
| CVE-2020-11828 | Hig | 0.49 | 7.5 | 0.01 | Apr 21, 2020 | In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), RGB is defined on the stack but uninitialized, so when the screenShot function to RGB value assignment, will not initialize the value is… | ||
| CVE-2025-27387 | Hig | 0.48 | 7.4 | 0.00 | Jun 23, 2025 | OPPO Clone Phone uses a weak password WiFi hotspot to transfer files, resulting in Information disclosure. | ||
| CVE-2023-26311 | Hig | 0.48 | 7.4 | 0.01 | Aug 10, 2023 | A remote code execution vulnerability in the webview component of OPPO Store app. | ||
| CVE-2023-26310 | Hig | 0.48 | 7.4 | 0.01 | Aug 9, 2023 | There is a command injection problem in the old version of the mobile phone backup app. | ||
| CVE-2026-22070 | Hig | 0.46 | 7.1 | 0.00 | Apr 30, 2026 | ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal. | ||
| CVE-2026-22077 | Med | 0.36 | — | 0.00 | Apr 27, 2026 | OPPO Wallet APP contains a trusted domain validation flaw that allows attackers to bypass protected interface access restrictions, which may lead to account token hijacking and sensitive information disclosure. | ||
| CVE-2020-11836 | Med | 0.36 | 5.5 | 0.00 | Feb 6, 2021 | OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb shell getprop ro.vendor.aee.enforcing” or “adb shell getprop ro.vendor.aee.enforcing” return no. | ||
| CVE-2020-11835 | Med | 0.36 | 5.5 | 0.00 | Dec 31, 2020 | In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_da9313.c, failure to check the parameter buf in the function proc_work_mode_write in proc_work_mode_write causes a vulnerability. |
- risk 0.64cvss 9.8epss 0.01
In OPPO Store APP, there's a possible escalation of privilege due to improper input validation.
- risk 0.64cvss 9.8epss 0.02
A command injection vulerability found in quick game engine allows arbitrary remote code in quick app. Allows remote attacke0rs to gain arbitrary code execution in quick game engine
- risk 0.64cvss 9.8epss 0.01
OvoiceManager has system permission to write vulnerability reports for arbitrary files, affected product is com.oppo.ovoicemanager V2.0.1.
- risk 0.64cvss 9.8epss 0.01
QualityProtect has a vulnerability to execute arbitrary system commands, affected product is com.oppo.qualityprotect V2.0.
- risk 0.64cvss 9.8epss 0.01
Dynamic loading of services in the backup and restore SDK leads to elevated privileges, affected product is com.coloros.codebook V2.0.0_5493e40_200722.
- risk 0.59cvss 9.1epss 0.00
In OPPO Usercenter Credit SDK, there's a possible escalation of privilege due to loose permission check, This could lead to application internal information leak w/o user interaction.
- risk 0.57cvss —epss 0.00
In OPPOStore iOS App, there's a possible escalation of privilege due to improper input validation.
- risk 0.54cvss —epss 0.00
Loading arbitrary external URLs through WebView components introduces malicious JS code that can steal arbitrary user tokens.
- risk 0.51cvss 7.8epss 0.01
ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But some apps in whitelist is not installed, attacker can disguise app with the same package name to obtain dangerous permission.
- risk 0.51cvss 7.8epss 0.00
In Oppo's battery application, the third-party SDK provides the function of loading a third-party Provider, which can be used.
- risk 0.51cvss 7.8epss 0.01
The Oppo F5 Android device with a build fingerprint of OPPO/CPH1723/CPH1723:7.1.1/N6F26Q/1513597833:user/release-keys contains a pre-installed platform app with a package name of com.dropboxchmod (versionCode=1, versionName=1.0) that contains an exported service named…
- risk 0.49cvss 7.5epss 0.01
In ACE2 ColorOS11, the attacker can obtain the foreground package name through permission promotion, resulting in user information disclosure.
- risk 0.49cvss 7.5epss 0.01
In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), RGB is defined on the stack but uninitialized, so when the screenShot function to RGB value assignment, will not initialize the value is…
- risk 0.48cvss 7.4epss 0.00
OPPO Clone Phone uses a weak password WiFi hotspot to transfer files, resulting in Information disclosure.
- risk 0.48cvss 7.4epss 0.01
A remote code execution vulnerability in the webview component of OPPO Store app.
- risk 0.48cvss 7.4epss 0.01
There is a command injection problem in the old version of the mobile phone backup app.
- risk 0.46cvss 7.1epss 0.00
ColorOS Assistant has an unauthenticated start-download channel, leading to file path traversal.
- risk 0.36cvss —epss 0.00
OPPO Wallet APP contains a trusted domain validation flaw that allows attackers to bypass protected interface access restrictions, which may lead to account token hijacking and sensitive information disclosure.
- risk 0.36cvss 5.5epss 0.00
OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb shell getprop ro.vendor.aee.enforcing” or “adb shell getprop ro.vendor.aee.enforcing” return no.
- risk 0.36cvss 5.5epss 0.00
In /SM8250_Q_Master/android/vendor/oppo_charger/oppo/charger_ic/oppo_da9313.c, failure to check the parameter buf in the function proc_work_mode_write in proc_work_mode_write causes a vulnerability.