CVE-2025-15509

The SmartRemote module has insufficient restrictions on loading URLs, which may lead to some information leakage.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:vivo:smartremote_module:*:*:*:*:*:android:*:*

History

09 Mar 2026, 16:49

Type Values Removed Values Added
References () https://www.vivo.com/en/support/security-advisory-detail?id=20 - () https://www.vivo.com/en/support/security-advisory-detail?id=20 - Vendor Advisory
CPE cpe:2.3:a:vivo:smartremote_module:*:*:*:*:*:android:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3
First Time Vivo smartremote Module
Vivo

27 Feb 2026, 07:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-27 07:17

Updated : 2026-03-09 16:49


NVD link : CVE-2025-15509

Mitre link : CVE-2025-15509

CVE.ORG link : CVE-2025-15509


JSON object : View

Products Affected

vivo

  • smartremote_module
CWE
CWE-306

Missing Authentication for Critical Function