Vulnerabilities > Google > Low

DATE CVE VULNERABILITY TITLE RISK
2022-05-03 CVE-2022-28784 Path Traversal vulnerability in Google Android 10.0/11.0/12.0
Path traversal vulnerability in Galaxy Themes prior to SMR May-2022 Release 1 allows attackers to list file names in arbitrary directory as system user.
local
low complexity
google CWE-22
3.3
2022-04-11 CVE-2022-27832 Out-of-bounds Read vulnerability in Google Android 10.0/11.0/12.0
Improper boundary check in media.extractor library prior to SMR Apr-2022 Release 1 allows attackers to cause denial of service via a crafted media file.
local
low complexity
google CWE-125
3.3
2022-04-11 CVE-2022-27576 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in Samsung DeX Home prior to SMR April-2022 Release 1 allows to access currently launched foreground app information without permission
local
low complexity
google CWE-668
3.3
2022-04-11 CVE-2022-27575 Incorrect Authorization vulnerability in Google Android 10.0/11.0/12.0
Information exposure vulnerability in One UI Home prior to SMR April-2022 Release 1 allows to access currently launched foreground app information without permission.
local
low complexity
google CWE-863
3.3
2022-04-11 CVE-2022-26090 Unspecified vulnerability in Google Android 10.0/11.0
Improper access control vulnerability in SamsungContacts prior to SMR Apr-2022 Release 1 allows that attackers can access contact information without permission.
local
low complexity
google
3.3
2022-04-11 CVE-2022-25833 Improper Authentication vulnerability in Google Android 10.0/11.0
Improper authentication in ImsService prior to SMR Apr-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission.
local
low complexity
google CWE-287
3.3
2022-03-30 CVE-2021-39739 Information Exposure Through Log Files vulnerability in Google Android 12.1
In ArrayMap, there is a possible leak of the content of SMS messages due to log information disclosure.
local
low complexity
google CWE-532
3.3
2022-03-10 CVE-2022-25817 Unspecified vulnerability in Google Android 10.0/11.0
Improper authentication in One UI Home prior to SMR Mar-2022 Release 1 allows attacker to generate pinned-shortcut without user consent.
local
low complexity
google
3.3
2022-03-10 CVE-2022-24929 Unspecified vulnerability in Google Android 10.0/11.0/12.0
Unprotected Activity in AppLock prior to SMR Mar-2022 Release 1 allows attacker to change the list of locked app without authentication.
local
low complexity
google
3.3
2022-02-11 CVE-2022-24000 Unspecified vulnerability in Google Android 10.0/11.0/12.0
PendingIntent hijacking vulnerability in DataUsageReminderReceiver prior to SMR Feb-2022 Release 1 allows local attackers to access media files without permission in KnoxPrivacyNoticeReceiver via implicit Intent.
local
low complexity
google
3.3