Vulnerabilities > Google > Android > 12.1

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2021-39746 Unspecified vulnerability in Google Android 12.1
In PermissionController, there is a possible way to delete some local files due to an unsafe PendingIntent.
local
low complexity
google
7.8
2022-03-30 CVE-2021-39747 Incorrect Default Permissions vulnerability in Google Android 12.1
In Settings Provider, there is a possible way to list values of non-readable global settings due to a permissions bypass.
local
low complexity
google CWE-276
5.5
2022-03-30 CVE-2021-39748 Incorrect Default Permissions vulnerability in Google Android 12.1
In InputMethodEditor, there is a possible way to access some files accessible to Settings due to an unsafe PendingIntent.
local
low complexity
google CWE-276
5.5
2022-03-30 CVE-2021-39749 Missing Authorization vulnerability in Google Android 12.1
In WindowManager, there is a possible way to start non-exported and protected activities due to a missing permission check.
local
low complexity
google CWE-862
7.8
2022-03-30 CVE-2021-39750 Missing Authorization vulnerability in Google Android 12.1
In PackageManager, there is a possible way to change the splash screen theme of other apps due to a missing permission check.
local
low complexity
google CWE-862
7.8
2022-03-30 CVE-2021-39751 Missing Authorization vulnerability in Google Android 12.1
In Settings, there is a possible way to read Bluetooth device names without proper permissions due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-03-30 CVE-2021-39752 Unspecified vulnerability in Google Android 12.1
In Bubbles, there is a possible way to interfere with Bubbles due to a permissions bypass.
local
low complexity
google
7.8
2022-03-30 CVE-2021-39753 Missing Authorization vulnerability in Google Android 12.1
In DomainVerificationService, there is a possible way to access app domain verification information due to a missing permission check.
local
low complexity
google CWE-862
5.5
2022-03-30 CVE-2021-39754 Information Exposure Through Discrepancy vulnerability in Google Android 12.1
In ContextImpl, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
5.5
2022-03-30 CVE-2021-39755 Information Exposure Through Discrepancy vulnerability in Google Android 12.1
In DevicePolicyManager, there is a possible way to reveal the existence of an installed package without proper query permissions due to side channel information disclosure.
local
low complexity
google CWE-203
5.5