Количество 3
Количество 3
CVE-2026-0048
In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
GHSA-qgpp-r4w5-rgmm
In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
BDU:2026-07675
Уязвимость класса WindowState.java компонента Framework операционных систем Android, позволяющая нарушителю повысить свои привилегии
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-0048 In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | CVSS3: 6.8 | 0% Низкий | 2 месяца назад | |
GHSA-qgpp-r4w5-rgmm In hide of WindowState.java, there is a possible way to trick the user into approving permissions due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | CVSS3: 6.8 | 0% Низкий | 2 месяца назад | |
BDU:2026-07675 Уязвимость класса WindowState.java компонента Framework операционных систем Android, позволяющая нарушителю повысить свои привилегии | CVSS3: 8.4 | 0% Низкий | 2 месяца назад |
Уязвимостей на страницу