Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f5qf-9v3x-p5j4

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In getUserCount and getCount of UserSwitcherController.java, there is possible new user creation due to a logic error. This could lead to local escalation of privilege for an attacker who has physical access to the device with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140486529

In getUserCount and getCount of UserSwitcherController.java, there is possible new user creation due to a logic error. This could lead to local escalation of privilege for an attacker who has physical access to the device with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140486529

EPSS

Процентиль: 15%
0.00049
Низкий

Связанные уязвимости

CVSS3: 6.8
nvd
около 6 лет назад

In getUserCount and getCount of UserSwitcherController.java, there is possible new user creation due to a logic error. This could lead to local escalation of privilege for an attacker who has physical access to the device with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140486529

EPSS

Процентиль: 15%
0.00049
Низкий