5.1
/ 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N
Description
A flaw exists in the verification of application installation sources within ColorOS. Under specific conditions, this issue may cause the risk detection mechanism to fail, which could allow malicious applications to be installed without proper warning.
Basic Information
ID
CVE-2025-27389
Source
OPPO
Published
Dec 5, 2025 at 03:19
Affected Product
Vendor
ColorOS
Product
ColorOS
Version
ColorOS 11–15
Affected Versions
ColorOS ColorOS ColorOS 11–15