Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-659x-8694-84c2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

An elevation of privilege vulnerability in Smart Lock could enable a local malicious user to access Smart Lock settings without a PIN. This issue is rated as Moderate because it first requires physical access to an unlocked device where Smart Lock was the last settings pane accessed by the user. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1. Android ID: A-29055171.

An elevation of privilege vulnerability in Smart Lock could enable a local malicious user to access Smart Lock settings without a PIN. This issue is rated as Moderate because it first requires physical access to an unlocked device where Smart Lock was the last settings pane accessed by the user. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1. Android ID: A-29055171.

EPSS

Процентиль: 5%
0.00021
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 4.6
nvd
около 9 лет назад

An elevation of privilege vulnerability in Smart Lock could enable a local malicious user to access Smart Lock settings without a PIN. This issue is rated as Moderate because it first requires physical access to an unlocked device where Smart Lock was the last settings pane accessed by the user. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1. Android ID: A-29055171.

fstec
около 9 лет назад

Уязвимость операционной системы Android, позволяющая нарушителю нарушить конфиденциальность информации

EPSS

Процентиль: 5%
0.00021
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-284