Vulnerabilities > Google > Android > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-28 CVE-2023-21174 Unspecified vulnerability in Google Android 13.0
In isPageSearchEnabled of BillingCycleSettings.java, there is a possible way for the guest user to change data limits due to a permissions bypass.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21175 Unspecified vulnerability in Google Android 13.0
In onCreate of DataUsageSummary.java, there is a possible method for a guest user to enable or disable mobile data due to a permissions bypass.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21179 Unspecified vulnerability in Google Android 13.0
In parseSecurityParamsFromXml of XmlUtil.java, there is a possible bypass of user specified wifi encryption protocol due to improperly used crypto.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21180 Out-of-bounds Read vulnerability in Google Android 13.0
In xmlParseTryOrFinish of parser.c, there is a possible out of bounds read due to a heap buffer overflow.
network
low complexity
google CWE-125
7.5
2023-06-28 CVE-2023-21183 Unspecified vulnerability in Google Android 13.0
In ForegroundUtils of ForegroundUtils.java, there is a possible way to read NFC tag data while the app is still in the background due to a logic error in the code.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21184 Unspecified vulnerability in Google Android 13.0
In getCurrentPrivilegedPackagesForAllUsers of CarrierPrivilegesTracker.java, there is a possible permission bypass due to a logic error in the code.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21185 Missing Authorization vulnerability in Google Android 13.0
In multiple functions of WifiNetworkFactory.java, there is a missing permission check.
local
low complexity
google CWE-862
7.8
2023-06-28 CVE-2023-21186 Out-of-bounds Read vulnerability in Google Android 13.0
In LogResponse of Dns.cpp, there is a possible out of bounds read due to a missing bounds check.
network
low complexity
google CWE-125
7.5
2023-06-28 CVE-2023-21187 Unspecified vulnerability in Google Android 13.0
In onCreate of UsbAccessoryUriActivity.java, there is a possible way to escape the Setup Wizard due to a logic error in the code.
local
low complexity
google
7.8
2023-06-28 CVE-2023-21189 Improper Locking vulnerability in Google Android 13.0
In startLockTaskMode of LockTaskController.java, there is a possible bypass of lock task mode due to a logic error in the code.
local
low complexity
google CWE-667
7.3