Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fh6j-979r-9hxg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In ComposeActivityEmailExternal of ComposeActivityEmailExternal.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible way to silently attach files to an email due to a confused deputy. This could lead to local information disclosure.

In ComposeActivityEmailExternal of ComposeActivityEmailExternal.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible way to silently attach files to an email due to a confused deputy. This could lead to local information disclosure.

EPSS

Процентиль: 3%
0.00017
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.5
nvd
больше 6 лет назад

In ComposeActivityEmailExternal of ComposeActivityEmailExternal.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible way to silently attach files to an email due to a confused deputy. This could lead to local information disclosure.

EPSS

Процентиль: 3%
0.00017
Низкий

Дефекты

CWE-200