Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-0055

2 месяца назад

In createSessionInternal of PackageInstallerService.java, there is a possible to update a Device Policy Controller (DPC) into an invalid directory due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-r8c4-7j88-47m9

2 месяца назад

In createSessionInternal of PackageInstallerService.java, there is a possible to update a Device Policy Controller (DPC) into an invalid directory due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.2
EPSS: Низкий
fstec логотип

BDU:2026-07674

2 месяца назад

Уязвимость метода createSessionInternal класса PackageInstallerService.java компонента Framework операционных систем Android, позволяющая нарушителю повысить свои привилегии

CVSS3: 8.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-0055

In createSessionInternal of PackageInstallerService.java, there is a possible to update a Device Policy Controller (DPC) into an invalid directory due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.2
0%
Низкий
2 месяца назад
github логотип
GHSA-r8c4-7j88-47m9

In createSessionInternal of PackageInstallerService.java, there is a possible to update a Device Policy Controller (DPC) into an invalid directory due to a path traversal error. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.2
0%
Низкий
2 месяца назад
fstec логотип
BDU:2026-07674

Уязвимость метода createSessionInternal класса PackageInstallerService.java компонента Framework операционных систем Android, позволяющая нарушителю повысить свои привилегии

CVSS3: 8.4
0%
Низкий
2 месяца назад

Уязвимостей на страницу