Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-44127

Опубликовано: 27 сент. 2023
Источник: nvd
CVSS3: 3.6
CVSS3: 5.5
EPSS Низкий

Описание

he vulnerability is that the Call management ("com.android.server.telecom") app patched by LG launches implicit intents that disclose sensitive data to all third-party apps installed on the same device. Those intents include data such as contact details and phone numbers.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:google:android:*:*:*:*:*:*:*:*
Версия от 8.0 (включая) до 13.0 (включая)
cpe:2.3:h:lg:v60_thin_q_5g:-:*:*:*:*:*:*:*

EPSS

Процентиль: 14%
0.00046
Низкий

3.6 Low

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-927
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 3.6
github
больше 2 лет назад

he vulnerability is that the Call management ("com.android.server.telecom") app patched by LG launches implicit intents that disclose sensitive data to all third-party apps installed on the same device. Those intents include data such as contact details and phone numbers.

EPSS

Процентиль: 14%
0.00046
Низкий

3.6 Low

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-927
NVD-CWE-noinfo