Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qhm9-gg74-g6m6

Опубликовано: 28 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insufficient UI. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-251586912

In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insufficient UI. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-251586912

EPSS

Процентиль: 72%
0.00703
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.5
nvd
больше 2 лет назад

In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insufficient UI. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-251586912

EPSS

Процентиль: 72%
0.00703
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200