CVE-2025-57452: Realme Clone Phone

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

In realme BackupRestore app v15.1.12_2810c08_250314, improper URI scheme handling in com.coloros.pc.PcToolMainActivity allows local attackers to cause a crash and potential XSS via crafted ADB intents.

Affected products

  • Realme Clone Phone: version 15.11.2_281008_250314 only

Published 2025-09-18. Last modified 2026-06-17.