Show filters
548 Total Results
Displaying 41-50 of 548
Sort by:
Attacker Value
Unknown

CVE-2021-1034

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In getLine1NumberForDisplay of PhoneInterfaceManager.java, there is apossible way to determine whether an app is installed, without querypermissions due to a missing permission check. This could lead to localinformation disclosure with no additional execution privileges needed. Userinteraction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-193441322
Attacker Value
Unknown

CVE-2021-1025

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In hasNamedWallpaper of WallpaperManagerService.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-193800652
Attacker Value
Unknown

CVE-2021-1017

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connection due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-182583850
Attacker Value
Unknown

CVE-2021-1011

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In setPackageStoppedState of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-188219307
Attacker Value
Unknown

CVE-2021-1010

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In getSigningKeySet of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-189857801
Attacker Value
Unknown

CVE-2021-1004

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-197749180
Attacker Value
Unknown

CVE-2021-0999

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In the broadcast definition in AndroidManifest.xml, there is a possible way to set the A2DP bluetooth device connection state due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-196858999
Attacker Value
Unknown

CVE-2021-0994

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In requestRouteToHostAddress of ConnectivityService.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-193801134
Attacker Value
Unknown

CVE-2021-0986

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owner, profile owner, or device admin due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-192247339
Attacker Value
Unknown

CVE-2021-0985

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-190403923