7.8
CVE-2022-47029
- EPSS 0.03%
- Veröffentlicht 30.05.2023 20:15:09
- Zuletzt bearbeitet 14.01.2025 17:15:08
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
An issue was found in Action Launcher v50.5 allows an attacker to escalate privilege via modification of the intent string to function update.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Actionlauncher ≫ Action Launcher Version50.5 SwPlatformandroid
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.058 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-1284 Improper Validation of Specified Quantity in Input
The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.