Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2022-08-05 CVE-2022-33724 Cleartext Transmission of Sensitive Information vulnerability in Google Android 10.0/11.0/12.0
Exposure of Sensitive Information in Samsung Dialer application?prior to SMR Aug-2022 Release 1 allows local attackers to access ICCID via log.
local
low complexity
google CWE-319
3.3
2022-08-05 CVE-2022-33722 Unspecified vulnerability in Google Android 12.0
Implicit Intent hijacking vulnerability in Smart View prior to SMR Aug-2022 Release 1 allows attacker to access connected device MAC address.
local
low complexity
google
3.3
2022-08-05 CVE-2022-33720 Improper Authentication vulnerability in Google Android 10.0/11.0
Improper authentication vulnerability in AppLock prior to SMR Aug-2022 Release 1 allows physical attacker to access Chrome locked by AppLock via new tap shortcut.
low complexity
google CWE-287
2.4
2022-08-05 CVE-2022-33718 Unspecified vulnerability in Google Android 10.0/11.0/12.0
An improper access control vulnerability in Wi-Fi Service prior to SMR AUG-2022 Release 1 allows untrusted applications to manipulate the list of apps that can use mobile data.
local
low complexity
google
3.3
2022-08-05 CVE-2022-33714 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in SemWifiApBroadcastReceiver prior to SMR Aug-2022 Release 1 allows attacker to reset a setting value related to mobile hotspot.
local
low complexity
google
3.3
2022-07-13 CVE-2022-20226 Improper Restriction of Rendered UI Layers or Frames vulnerability in Google Android 12.0/12.1
In finishDrawingWindow of WindowManagerService.java, there is a possible tapjacking due to improper input validation.
local
low complexity
google CWE-1021
3.9
2022-07-12 CVE-2022-33701 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in KnoxCustomManagerService prior to SMR Jul-2022 Release 1 allows attacker to call PowerManaer.goToSleep method which is protected by system permission by sending braodcast intent.
local
low complexity
google
3.3
2022-07-12 CVE-2022-33700 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Exposure of Sensitive Information in putDsaSimImsi in TelephonyUI prior to SMR Jul-2022 Release 1 allows local attacker to access imsi via log.
local
low complexity
google CWE-668
2.3
2022-07-12 CVE-2022-33699 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Exposure of Sensitive Information in getDsaSimImsi in TelephonyUI prior to SMR Jul-2022 Release 1 allows local attacker to access imsi via log.
local
low complexity
google CWE-668
2.3
2022-07-12 CVE-2022-33698 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Exposure of Sensitive Information in Telecom application prior to SMR Jul-2022 Release 1 allows local attackers to access ICCID via log.
local
low complexity
google CWE-668
3.3