CVE-2026-3674 Details
Description
A vulnerability was found in Freedom Factory dGEN1 up to 20260221. Affected by this vulnerability is the function FakeAppProvider of the component org.ethosmobile.ethoslauncher. Performing a manipulation results in improper authorization. The attack must be initiated from a local position. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
A broken authorization vulnerability exists in the Freedom Factory dGEN1 phone, specifically within the Android launcher application 'org.ethosmobile.ethoslauncher'. The issue arises in an exported ContentProvider called 'FakeAppProvider', which improperly validates trusted callers by relying on untrusted data from 'ContentValues'. This flaw allows any local application to impersonate the legitimate dGEN App Directory and manipulate launcher entries. Consequently, unauthorized apps can enumerate, add, modify, or delete 'FakeApp' icons, potentially leading to phishing and user deception.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Mar 7, 2026CISA-ADP
Assessed Mar 11, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://gist.github.com/Lytes/571902a31a3d543da009554a82f2d00c | [email protected] | ExploitRemedyTechnical Analysis |
| https://vuldb.com/?ctiid.349570 | [email protected] | AdvisoryPermission Required |
| https://vuldb.com/?id.349570 | [email protected] | AdvisoryExploitPartial Content |
| https://vuldb.com/?submit.764700 | [email protected] | ExploitTechnical Description |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-266 | Incorrect Privilege Assignment | [email protected] |
| CWE-285 | Improper Authorization | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| Freedom Factory dGEN1 | All versions |
CPE
Remediation
| |
| org.ethosmobile.ethoslauncher | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Apr 29, 2026 | Data Remediation | [email protected] |
| Mar 7, 2026 | New CVE Received | [email protected] |
Volerion