CVE-2023-40133
- EPSS 0.04%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:50
In multiple locations of DialogFillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed...
CVE-2023-40134
- EPSS 0.02%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:50
In isFullScreen of FillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploit...
CVE-2023-40135
- EPSS 0.02%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:50
In applyCustomDescription of SaveUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed f...
CVE-2023-40136
- EPSS 0.02%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:50
In setHeader of DialogFillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for expl...
CVE-2023-40137
- EPSS 0.02%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:50
In multiple functions of DialogFillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed...
CVE-2023-40138
- EPSS 0.02%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:51
In FillUi of FillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2023-40139
- EPSS 0.02%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:51
In FillUi of FillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2023-40140
- EPSS 0.05%
- Veröffentlicht 27.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:18:51
In android_view_InputDevice_create of android_view_InputDevice.cpp, there is a possible way to execute arbitrary code due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User inter...
CVE-2023-40116
- EPSS 0.01%
- Veröffentlicht 27.10.2023 21:15:08
- Zuletzt bearbeitet 05.05.2025 15:15:51
In onTaskAppeared of PipTaskOrganizer.java, there is a possible way to bypass background activity launch restrictions due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. U...
CVE-2023-40117
- EPSS 0.01%
- Veröffentlicht 27.10.2023 21:15:08
- Zuletzt bearbeitet 29.04.2025 20:15:24
In resetSettingsLocked of SettingsProvider.java, there is a possible lockscreen bypass due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for ex...