CVE-2012-2640: Yomecolle Nec Biglobe Yome Collection

Medium severity, CVSS 5.0. EPSS: 1.4% chance of exploitation in the next 30 days.

The NEC BIGLOBE Yome Collection application 1.8.3 and earlier for Android allows remote attackers to read the IMEI value from an SD card via a crafted application that lacks the READ_PHONE_STATE permission.

Affected products

  • Yomecolle Nec Biglobe Yome Collection: up to and including 1.8.3

Published 2012-07-05. Last modified 2026-06-16.