Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7jv7-3r2p-mrpw

Опубликовано: 05 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

In visitUris of Notification.java, there is a possible cross-user media read due to Confused Deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

In visitUris of Notification.java, there is a possible cross-user media read due to Confused Deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

EPSS

Процентиль: 17%
0.00054
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 2 лет назад

In visitUris of Notification.java, there is a possible cross-user media read due to Confused Deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 5.5
nvd
около 2 лет назад

In visitUris of Notification.java, there is a possible cross-user media read due to Confused Deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

EPSS

Процентиль: 17%
0.00054
Низкий

5.5 Medium

CVSS3