{"id":"CVE-2025-14817","title":"The component com.transsion.tranfacmode.entrance.main.MainActivity in com.transsion.tranfacmode has no permission control and can be accessed by third-party apps which can construct intents to directly open adb debugging functionality wi…","summary":"The component com.transsion.tranfacmode.entrance.main.MainActivity in com.transsion.tranfacmode has no permission control and can be accessed by third-party apps which can construct intents to directly open adb debugging functionality wi…","severity":"medium","cvss":6.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N","cwe":["CWE-862"],"vendor":"transsion","product":"hios","affected":["hios = 14.0.0"],"published":"2025-12-17","updated":"2026-09-28","sourceUpdated":"2026-09-28T10:10:00.473","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-14817","references":[{"url":"https://security.tecno.com/SRC/blogdetail/434?lang=en_US","label":"907edf6c-bf03-423e-ab1a-8da27e1aa1ea"},{"url":"https://security.tecno.com/SRC/securityUpdates","label":"907edf6c-bf03-423e-ab1a-8da27e1aa1ea"}],"tags":["nvd"],"epss":0.00197,"epssPercentile":0.08411,"ingestedAt":"2026-09-28T11:08:06.662Z","slug":"CVE-2025-14817","body":"## Overview\n\nThe component com.transsion.tranfacmode.entrance.main.MainActivity in com.transsion.tranfacmode has no permission control and can be accessed by third-party apps which can construct intents to directly open adb debugging functionality without user interaction.\n\n## Affected\n\n- `hios = 14.0.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":36,"depthScoreParts":{"impact":35.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}