Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2022-07-12 CVE-2022-30757 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper authorization in isemtelephony prior to SMR Jul-2022 Release 1 allows attacker to obtain CID without ACCESS_FINE_LOCATION permission.
local
low complexity
google
3.3
2022-07-12 CVE-2022-30753 Incorrect Default Permissions vulnerability in Google Android 10.0/11.0/12.0
Improper use of a unique device ID in unprotected SecSoterService prior to SMR Jul-2022 Release 1 allows local attackers to get the device ID without permission.
local
low complexity
google CWE-276
3.3
2022-07-12 CVE-2022-30752 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in sendDHCPACKBroadcast function of SemWifiApClient prior to SMR Jul-2022 Release 1 allows attacker to access wifi ap client mac address that connected by using WIFI_AP_STA_STATE_CHANGED action.
local
low complexity
google
3.3
2022-07-12 CVE-2022-30751 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in sendDHCPACKBroadcast function of SemWifiApClient prior to SMR Jul-2022 Release 1 allows attacker to access wifi ap client mac address that connected by using WIFI_AP_STA_DHCPACK_EVENT action.
local
low complexity
google
3.3
2022-07-12 CVE-2022-30750 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Improper access control vulnerability in updateLastConnectedClientInfo function of SemWifiApClient prior to SMR Jul-2022 Release 1 allows attacker to access wifi ap client mac address that connected.
local
low complexity
google
3.3
2022-06-07 CVE-2022-30728 Exposure of Resource to Wrong Sphere vulnerability in Google Android 11.0/12.0
Information exposure vulnerability in ScanPool prior to SMR Jun-2022 Release 1 allows local attackers to get MAC address information.
local
low complexity
google CWE-668
3.3
2022-06-07 CVE-2022-30714 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in SemIWCMonitor prior to SMR Jun-2022 Release 1 allows local attackers to get MAC address information.
local
low complexity
google CWE-668
3.3
2022-06-07 CVE-2022-28794 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Sensitive information exposure in low-battery dumpstate log prior to SMR Jun-2022 Release 1 allows local attackers to get SIM card information.
local
low complexity
google CWE-668
3.3
2022-05-03 CVE-2022-28784 Path Traversal vulnerability in Google Android 10.0/11.0/12.0
Path traversal vulnerability in Galaxy Themes prior to SMR May-2022 Release 1 allows attackers to list file names in arbitrary directory as system user.
local
low complexity
google CWE-22
3.3
2022-04-11 CVE-2022-27832 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper boundary check in media.extractor library prior to SMR Apr-2022 Release 1 allows attackers to cause denial of service via a crafted media file.
local
low complexity
google CWE-125
3.3