TECNO Mobile Limited
First CVE: Apr 15, 2024Active for: 2 years
21
CVEs Published
More CVEs Published than 41% of tracked CNAs
7.0
Avg CVEs / Year
More Avg CVEs / Year than 42% of tracked CNAs
7.7
Avg CVSS Score
Higher Avg CVSS Score than 78% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Self-Reporting Analysis
Of all the CVEs published by TECNO Mobile Limited as a CNA, 0.0% affect products that TECNO Mobile Limited develops as a vendor.
100.0%
Self-reported: 0Third-party: 21
Trends Over Time
The number and severity of CVEs published by TECNO Mobile Limited over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 15, 2024
2 years ago
Most Recent CVE
Jun 2, 2026
52 days ago
Top CVEs
All CVEs published by TECNO Mobile Limited as a CNA, regardless of affected vendor or product.
21 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-15385CRITICAL Insufficient Verification of Data Authenticity vulnerability in TECNO Mobile com.Afmobi.Boomplayer allows Authentication Bypass.This issue affects com.Afmobi.Boomplayer: 7.4.63. | Jan 6, 2026 | 9.8 | 31 | NO | NO |
CVE-2024-10018CRITICAL Improper permission control in the mobile application (com.transsion.aivoiceassistant) can lead to the launch of any unexported component. | Oct 16, 2024 | 9.8 | 31 | NO | NO |
CVE-2026-10510MEDIUM Cross-Site Scripting (XSS) in GeniexWebView component in Transsion AI Assistant Lifestyle application (com.transsion.aiassistantlifestyle) all versions on Android allows remote att | Jun 2, 2026 | 6.1 | 29 | NO | NO |
CVE-2024-5163CRITICAL Improper permission settings for mobile applications (com.transsion.carlcare) may lead to user password and account security risks. | Jun 17, 2024 | 9.8 | 29 | NO | NO |
CVE-2024-3701CRITICAL The system application (com.transsion.kolun.aiservice) component does not perform an authentication check, which allows attackers to perform malicious exploitations and affect syst | Apr 15, 2024 | 9.8 | 29 | NO | NO |
CVE-2025-6172CRITICAL Permission vulnerability in the mobile application (com.afmobi.boomplayer) may lead to the risk of unauthorized operation. | Jun 16, 2025 | 9.8 | 27 | NO | NO |
CVE-2025-1298CRITICAL Logic vulnerability in the mobile application (com.transsion.carlcare) may lead to the risk of account takeover. | Feb 14, 2025 | 9.8 | 26 | NO | NO |
CVE-2024-12603CRITICAL A logic vulnerability in the the mobile application (com.transsion.applock) can lead to bypassing the application password. | Dec 13, 2024 | 9.8 | 26 | NO | NO |
CVE-2024-8039CRITICAL Improper permission configurationDomain configuration vulnerability of the mobile application (com.afmobi.boomplayer) can lead to account takeover risks. | Sep 14, 2024 | 9.8 | 26 | NO | NO |
CVE-2026-0634HIGH Code execution in AssistFeedbackService of TECNO Pova7 Pro 5G on Android allows local apps to execute arbitrary code as system via command injection. | Apr 2, 2026 | 7.8 | 25 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA21 CVEs
10%
19%
33%
38%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local3 (14.3%)
Network18 (85.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low19 (90.5%)
High2 (9.5%)
Unknown0 (0.0%)
User Interaction
None19 (90.5%)
Unknown0 (0.0%)
Required2 (9.5%)
Privileges Required
Low2 (9.5%)
High0 (0.0%)
None19 (90.5%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (21 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by TECNO Mobile Limited as a CNA.
Media Mentions
Media articles that mention a CVE ID published by TECNO Mobile Limited as a CNA — matched by CVE ID, not by organization name.