Home

Description

In realme BackupRestore app v15.1.12_2810c08_250314, improper URI scheme handling in com.coloros.pc.PcToolMainActivity allows local attackers to cause a crash and potential XSS via crafted ADB intents.

PUBLISHED Reserved 2025-08-17 | Published 2025-09-18 | Updated 2025-09-18 | Assigner mitre

References

realme.com/

gist.github.com/Brucewebva/8a37010c5b1f05fd5e61591830bcbb37

cve.org (CVE-2025-57452)

nvd.nist.gov (CVE-2025-57452)

Download JSON