Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2h2w-cg7r-99fh

Опубликовано: 12 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

In Messaging, there is a possible way to attach files to a message without proper access checks due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-226134095

In Messaging, there is a possible way to attach files to a message without proper access checks due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-226134095

EPSS

Процентиль: 3%
0.00016
Низкий

7.8 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.8
nvd
больше 3 лет назад

In Messaging, there is a possible way to attach files to a message without proper access checks due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-226134095

EPSS

Процентиль: 3%
0.00016
Низкий

7.8 High

CVSS3

Дефекты

CWE-20