Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2022-08-12 CVE-2022-20335 Missing Authorization vulnerability in Google Android 13.0
In Wifi Slice, there is a possible way to adjust Wi-Fi settings even when the permission has been disabled due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20336 Missing Authorization vulnerability in Google Android 13.0
In Settings, there is a possible installed application disclosure due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20338 Improper Input Validation vulnerability in Google Android 13.0
In HierarchicalUri.readFrom of Uri.java, there is a possible way to craft a malformed Uri object due to improper input validation.
local
low complexity
google CWE-20
3.3
2022-08-12 CVE-2022-20339 Unspecified vulnerability in Google Android 13.0
In Android, there is a possible access of network neighbor table information due to an insecure SEpolicy configuration.
local
low complexity
google
3.3
2022-08-12 CVE-2022-20340 Missing Authorization vulnerability in Google Android 13.0
In SELinux policy, there is a possible way of inferring which websites are being opened in the browser due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20342 Insecure Default Initialization of Resource vulnerability in Google Android 13.0
In WiFi, there is a possible disclosure of WiFi password to the end user due to an insecure default value.
local
low complexity
google CWE-1188
3.3
2022-08-11 CVE-2022-20241 Improper Input Validation vulnerability in Google Android 13.0.0
In Messaging, there is a possible way to attach a private file to an SMS message due to improper input validation.
local
low complexity
google CWE-20
3.3
2022-08-11 CVE-2022-20245 Unspecified vulnerability in Google Android 13.0.0
In WindowManager, there is a possible method to create a recording of the lock screen due to an insecure default value.
low complexity
google
2.4
2022-08-11 CVE-2022-20249 Information Exposure Through Discrepancy vulnerability in Google Android 13.0.0
In LocaleManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
3.3
2022-08-11 CVE-2022-20251 Information Exposure Through Discrepancy vulnerability in Google Android 13.0.0
In LocaleManager, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
3.3