Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-20932
HistoryFeb 28, 2023 - 5:15 p.m.

Input validation

2023-02-2817:15:00
PRIOn knowledge base
www.prio-n.com
4
input validation
editinfofragment
contacts
local information disclosure
android-10
android-11
android-12
android-12l
android-13
nvd

3.6 Low

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

In onCreatePreferences of EditInfoFragment.java, there is a possible way to read contacts belonging to other users due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-248251018

3.6 Low

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Related for PRION:CVE-2023-20932