Vulnerabilities > Google > Android > Low

DATE CVE VULNERABILITY TITLE RISK
2022-04-11 CVE-2022-27576 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in Samsung DeX Home prior to SMR April-2022 Release 1 allows to access currently launched foreground app information without permission
local
low complexity
google CWE-668
3.3
2022-04-11 CVE-2022-27575 Incorrect Authorization vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in One UI Home prior to SMR April-2022 Release 1 allows to access currently launched foreground app information without permission.
local
low complexity
google CWE-863
3.3
2022-04-11 CVE-2022-26090 Unspecified vulnerability in Google Android 10.0/11.0
Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows that attackers can access contact information without permission.
local
low complexity
google
3.3
2022-04-11 CVE-2022-25833 Improper Authentication vulnerability in Google Android 10.0/11.0
Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission.
local
low complexity
google CWE-287
3.3
2022-03-30 CVE-2021-39739 Information Exposure Through Log Files vulnerability in Google Android 12.1
In ArrayMap, there is a possible leak of the content of SMS messages due to log information disclosure.
local
low complexity
google CWE-532
3.3
2022-03-10 CVE-2022-25817 Unspecified vulnerability in Google Android 10.0/11.0
Improper authentication in One UI Home prior to SMR Mar-2022 Release 1 allows attacker to generate pinned-shortcut without user consent.
local
low complexity
google
3.3
2022-03-10 CVE-2022-24929 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Unprotected Activity in AppLock prior to SMR Mar-2022 Release 1 allows attacker to change the list of locked app without authentication.
local
low complexity
google
3.3
2022-02-11 CVE-2022-24000 Unspecified vulnerability in Google Android 10.0/11.0/12.0
PendingIntent hijacking vulnerability in DataUsageReminderReceiver prior to SMR Feb-2022 Release 1 allows local attackers to access media files without permission in KnoxPrivacyNoticeReceiver via implicit Intent.
local
low complexity
google
3.3
2022-02-11 CVE-2022-23999 Unspecified vulnerability in Google Android 10.0/11.0/12.0
PendingIntent hijacking vulnerability in CpaReceiver prior to SMR Feb-2022 Release 1 allows local attackers to access media files without permission in KnoxPrivacyNoticeReceiver via implicit Intent.
local
low complexity
google
3.3
2022-01-14 CVE-2021-39628 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0
In StatusBar.java, there is a possible disclosure of notification content on the lockscreen due to a logic error in the code.
local
low complexity
google CWE-668
3.3