Show filters
548 Total Results
Displaying 41-50 of 548
Sort by:
Attacker Value
Unknown
CVE-2021-1034
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In getLine1NumberForDisplay of PhoneInterfaceManager.java, there is apossible way to determine whether an app is installed, without querypermissions due to a missing permission check. This could lead to localinformation disclosure with no additional execution privileges needed. Userinteraction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-193441322
0
Attacker Value
Unknown
CVE-2021-1025
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In hasNamedWallpaper of WallpaperManagerService.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-193800652
0
Attacker Value
Unknown
CVE-2021-1017
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In AdapterService and GattService definition of AndroidManifest.xml, there is a possible way to disable bluetooth connection due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-182583850
0
Attacker Value
Unknown
CVE-2021-1011
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In setPackageStoppedState of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-188219307
0
Attacker Value
Unknown
CVE-2021-1010
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In getSigningKeySet of PackageManagerService.java, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-189857801
0
Attacker Value
Unknown
CVE-2021-1004
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-197749180
0
Attacker Value
Unknown
CVE-2021-0999
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In the broadcast definition in AndroidManifest.xml, there is a possible way to set the A2DP bluetooth device connection state due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-196858999
0
Attacker Value
Unknown
CVE-2021-0994
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In requestRouteToHostAddress of ConnectivityService.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-193801134
0
Attacker Value
Unknown
CVE-2021-0986
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owner, profile owner, or device admin due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-192247339
0
Attacker Value
Unknown
CVE-2021-0985
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In onReceive of AlertReceiver.java, there is a possible way to dismiss system dialog due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-190403923
0