Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-40079
HistoryDec 04, 2023 - 11:15 p.m.

Code injection

2023-12-0423:15:00
PRIOn knowledge base
www.prio-n.com
3
code injection
shortcutservice
permissions bypass
local escalation
user interaction

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

In injectSendIntentSender of ShortcutService.java, there is a possible background activity launch due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CPENameOperatorVersion
androideq14.0

7.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Related for PRION:CVE-2023-40079