Show filters
1,141 Total Results
Displaying 131-140 of 1,141
Sort by:
Attacker Value
Unknown

CVE-2022-20536

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In registerBroadcastReceiver of RcsService.java, there is a possible way to change preferred TTY mode due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-235100180
Attacker Value
Unknown

CVE-2022-20533

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In getSlice of WifiSlice.java, there is a possible way to connect a new WiFi network from the guest mode due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-232798363
Attacker Value
Unknown

CVE-2022-20529

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In multiple locations of WifiDialogActivity.java, there is a possible limited lockscreen bypass due to a logic error in the code. This could lead to local escalation of privilege in wifi settings with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-231583603
Attacker Value
Unknown

CVE-2022-20522

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In getSlice of ProviderModelSlice.java, there is a missing permission check. This could lead to local escalation of privilege from the guest user with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-227470877
Attacker Value
Unknown

CVE-2022-20519

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In onCreate of AddAppNetworksActivity.java, there is a possible way for a guest user to configure WiFi networks due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-224772678
Attacker Value
Unknown

CVE-2022-20511

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In getNearbyAppStreamingPolicy of DevicePolicyManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-235821829
Attacker Value
Unknown

CVE-2022-20510

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In getNearbyNotificationStreamingPolicy of DevicePolicyManagerService.java, there is a possible way to learn about the notification streaming policy of other users due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-235822336
Attacker Value
Unknown

CVE-2022-20508

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In onAttach of ConfigureWifiSettings.java, there is a possible way for a guest user to change WiFi settings due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-218679614
Attacker Value
Unknown

CVE-2022-20506

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In onCreate of WifiDialogActivity.java, there is a missing permission check. This could lead to local escalation of privilege from a guest user with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-226133034
Attacker Value
Unknown

CVE-2022-20504

Disclosure Date: December 16, 2022 (last updated February 24, 2025)
In multiple locations of DreamManagerService.java, there is a missing permission check. This could lead to local escalation of privilege and dismissal of system dialogs with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-225878553