Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-0593

Опубликовано: 12 мая 2017
Источник: nvd
CVSS3: 7.8
CVSS2: 9.3
EPSS Низкий

Описание

An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to obtain access to custom permissions. This issue is rated as High because it is a general bypass for operating system protections that isolate application data from other applications. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34114230.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:6.0.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:7.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:7.1.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:7.1.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:7.1.2:*:*:*:*:*:*:*

EPSS

Процентиль: 6%
0.00024
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 8 лет назад

An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to obtain access to custom permissions. This issue is rated as High because it is a general bypass for operating system protections that isolate application data from other applications. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34114230.

CVSS3: 7.8
github
больше 3 лет назад

An elevation of privilege vulnerability in the Framework APIs could enable a local malicious application to obtain access to custom permissions. This issue is rated as High because it is a general bypass for operating system protections that isolate application data from other applications. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2. Android ID: A-34114230.

fstec
больше 8 лет назад

Уязвимость приложения Framework API операционной системы Android, позволяющая нарушителю получить доступ к пользовательским разрешениям

EPSS

Процентиль: 6%
0.00024
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-732