Описание
In LK, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege for an attacker who has physical access to the device with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-180427272
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
EPSS
Процентиль: 9%
0.00033
Низкий
6.6 Medium
CVSS3
4.4 Medium
CVSS2
Дефекты
CWE-1188
Связанные уязвимости
CVSS3: 6.6
github
больше 3 лет назад
In LK, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege for an attacker who has physical access to the device with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-180427272
EPSS
Процентиль: 9%
0.00033
Низкий
6.6 Medium
CVSS3
4.4 Medium
CVSS2
Дефекты
CWE-1188