CVE-2026-40002Disclosure(zte / nubia-in_nx809j)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch zte nubia-in_nx809j systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Red Magic 11 Pro (NX809J) contains a vulnerability that allows non-privileged applications to trigger sensitive operations. The vulnerability stems from the lack of validation for applications accessing the service interface. Exploiting this vulnerability, an attacker can write files to specific partitions and set writable system properties.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-269

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • nubia-in_nx809j
  • nubia-in_nx809j_firmware

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-17); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
nubia-in_nx809jnubia-in_nx809j_firmware

1 version affected across 2 products

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-17: 2Mentions · 2026-08-06: 1Patch / Workaround · 2026-08-06: 1Technical Details · 2026-04-17: 2Technical Details · 2026-08-06: 104-1708-06
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-172
Disclosure1General1
2026-08-061
Disclosure1
Full discourse3 posts
  • ANONYMOUS™️ 𝕏🔪 🩸@borntoFLY11135
    Disclosure

    Apparently back in april, redmagic 11 pro had a priveledge escalation vulnerablity (CVE-2026-40002) which allowed apps to do sensitive operations unknowingly. My reasonable guess is that it got fixed june but current status of this fix is unknown. https://nvd.nist.gov/vuln/detail/CVE-2026-40002 Edit: this affected devices in MR1 regions: https://www.cve.org/CVERecord?id=CVE-2026-40002

    Post summary

    An April‑reported privilege escalation vulnerability (CVE-2026-40002) on RedMagic 11 Pro may have been patched in June, but current fix status is uncertain, affecting MR1 region devices.

    00010165
    374 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-40002 Unvalidated Service Interface Access Enables Arbitrary File Writing in Red Magic 11 Pro https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-40002

    Post summary

    The post announces CVE-2026-40002, highlighting an unvalidated service interface that permits arbitrary file writing on Red Magic 11 Pro, while offering no further details, exploit code, or mitigations.

    0000049
    4.0K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-40002 Red Magic 11 Pro (NX809J) contains a vulnerability that allows non-privileged applications to trigger sensitive operations. The vulnerability stems from the lack of v… https://www.cve.org/CVERecord?id=CVE-2026-40002

    Post summary

    The note references CVE‑2026‑40002 for the Red Magic 11 Pro, indicating a privilege‑escalation flaw that lets non‑privileged apps invoke sensitive functions, but offers no PoC, exploit tool, patch, or active‑use details.

    0000071
    57.2K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWztenubia-in_nx809j---
OSztenubia-in_nx809j_firmware---

Explore more