Описание
In createMultiProfilePagerAdapter of ChooserActivity.java , there is a possible way for an app to launch the ChooserActivity in another profile due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Уязвимые конфигурации
Одно из
EPSS
4 Medium
CVSS3
Дефекты
Связанные уязвимости
In createMultiProfilePagerAdapter of ChooserActivity.java , there is a possible way for an app to launch the ChooserActivity in another profile due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Уязвимость функции createMultiProfilePagerAdapter() модуля ChooserActivity.java операционных систем Android, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код
EPSS
4 Medium
CVSS3