Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cwp7-39x8-fh23

Опубликовано: 13 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

In KeyChain, there is a possible spoof keychain chooser activity request due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-191876118

In KeyChain, there is a possible spoof keychain chooser activity request due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-191876118

EPSS

Процентиль: 2%
0.00015
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.7
nvd
больше 3 лет назад

In KeyChain, there is a possible spoof keychain chooser activity request due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-191876118

EPSS

Процентиль: 2%
0.00015
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-20