On Honeywell Mobile Computers (CT60 running Android OS 7.1, CN80 running Android OS 7.1, CT40 running Android OS 7.1, CK75 running Android OS 6.0, CN75 running Android OS 6.0, CN75e running Android OS 6.0, CT50 running Android OS 6.0, D75e running Android OS 6.0, CT50 running Android OS 4.4, D75e running Android OS 4.4, CN51 running Android OS 6.0, EDA50k running Android 4.4, EDA50 running Android OS 7.1, EDA50k running Android OS 7.1, EDA70 running Android OS 7.1, EDA60k running Android OS 7.1, and EDA51 running Android OS 8.1), a skilled attacker with advanced knowledge of the target system could exploit this vulnerability by creating an application that would successfully bind to the service and gain elevated system privileges
Published Sep 24, 2018
5.8
MEDIUMCVSS 3.0
EPSS 0.79%
Description
On Honeywell Mobile Computers (CT60 running Android OS 7.1, CN80 running Android OS 7.1, CT40 running Android OS 7.1, CK75 running Android OS 6.0, CN75 running Android OS 6.0, CN75e running Android OS 6.0, CT50 running Android OS 6.0, D75e running Android OS 6.0, CT50 running Android OS 4.4, D75e running Android OS 4.4, CN51 running Android OS 6.0, EDA50k running Android 4.4, EDA50 running Android OS 7.1, EDA50k running Android OS 7.1, EDA70 running Android OS 7.1, EDA60k running Android OS 7.1, and EDA51 running Android OS 8.1), a skilled attacker with advanced knowledge of the target system could exploit this vulnerability by creating an application that would successfully bind to the service and gain elevated system privileges. This could enable the attacker to obtain access to keystrokes, passwords, personal identifiable information, photos, emails, or business-critical documents.
Affected products
-
- Version CK75 running Android OS 6.0StatusaffectedConstraints-
- Version CN51 running Android OS 6.0StatusaffectedConstraints-
- Version CN75 running Android OS 6.0StatusaffectedConstraints-
- Version CN75e running Android OS 6.0StatusaffectedConstraints-
- Version CN80 running Android OS 7.1StatusaffectedConstraints-
- Version CT40 running Android OS 7.1StatusaffectedConstraints-
- Version CT50 running Android OS 4.4StatusaffectedConstraints-
- Version CT50 running Android OS 6.0StatusaffectedConstraints-
- Version CT60 running Android OS 7.1StatusaffectedConstraints-
- Version D75e running Android OS 4.4StatusaffectedConstraints-
- Version D75e running Android OS 6.0StatusaffectedConstraints-
- Version EDA50 running Android OS 7.1StatusaffectedConstraints-
- Version EDA50k running Android 4.4StatusaffectedConstraints-
- Version EDA50k running Android OS 7.1StatusaffectedConstraints-
- Version EDA51 running Android OS 8.1StatusaffectedConstraints-
- Version EDA60k running Android OS 7.1StatusaffectedConstraints-
- Version EDA70 running Android OS 7.1StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Honeywell | Mobile Computers | n/a |
|
Configuration 1
Configuration 2
Configuration 3
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:H
AV:N/AC:M/Au:N/C:P/I:P/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 4, 2026.
Score over time
2021-2026- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
Percentile over time
- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
Table of values (9 key points)
Flat stretches are collapsed. Showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 4, 2026 | 0.79% (0.00791) | 54.76th | v5 (v2026.06.15) |
| Aug 23, 2026 | 1.70% (0.01699) | 75.05th | v5 (v2026.06.15) |
| Jul 20, 2024 | 0.10% (0.00097) | 41.05th | v3 (v2023.03.01) |
| Sep 18, 2023 | 0.10% (0.00097) | 40.04th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.08% (0.00081) | 33.08th | v3 (v2023.03.01) |
| Mar 6, 2023 | 0.95% (0.00954) | 36.37th | v2 (v2022.01.01) |
| Feb 4, 2022 | 0.95% (0.00954) | 16.28th | v2 (v2022.01.01) |
| Feb 3, 2022 | 0.34% (0.00344) | 3.22th | v5 (v2026.06.15) |
| Apr 14, 2021 | 0.34% (0.00344) | 0.00th | v1 |
References (3)
- http://www.securityfocus.com/bid/105767 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- https://cert.vde.com/de-de/advisories/vde-2018-016 x_refsource_MISCThird Party Advisory
- https://ics-cert.us-cert.gov/advisories/ICSA-18-256-01 x_refsource_MISCThird Party AdvisoryUS Government Resource
| Link | Providers | Tags |
|---|---|---|
| http://www.securityfocus.com/bid/105767 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| https://cert.vde.com/de-de/advisories/vde-2018-016 | x_refsource_MISCThird Party Advisory | |
| https://ics-cert.us-cert.gov/advisories/ICSA-18-256-01 | x_refsource_MISCThird Party AdvisoryUS Government Resource |
Change history (0)
No recorded changes yet.