Логотип exploitDog
bind:CVE-2023-20959
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-20959

Количество 2

Количество 2

nvd логотип

CVE-2023-20959

почти 3 года назад

In AddSupervisedUserActivity, guest users are not prevented from starting the activity due to missing permissions checks. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-249057848

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-78q9-q3h9-qcp9

почти 3 года назад

In AddSupervisedUserActivity, guest users are not prevented from starting the activity due to missing permissions checks. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-249057848

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-20959

In AddSupervisedUserActivity, guest users are not prevented from starting the activity due to missing permissions checks. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-249057848

CVSS3: 7.8
0%
Низкий
почти 3 года назад
github логотип
GHSA-78q9-q3h9-qcp9

In AddSupervisedUserActivity, guest users are not prevented from starting the activity due to missing permissions checks. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-249057848

CVSS3: 7.8
0%
Низкий
почти 3 года назад

Уязвимостей на страницу