Перейти к содержимому
Noroxi

CWE-926 · 127 записей

Improper Export of Android Application Components

CVE этого класса

127 записей

  • CVE-2026-21055
    34Наблюдать

    Improper export of android application components in Bixby prior to version 4.0.70.8 allows local attackers to execute arbitrary commands wi

    ВысокаяCVSS 8,5Proof of conceptEPSS 0 %

    samsung mobile · bixby10 июл. 2026 г.

  • CVE-2026-81301
    34Наблюдать

    Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access

    ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %

    ekia · file manager14 сент. 2026 г.

  • CVE-2025-5344
    34Наблюдать

    Exposed AIDL service allowing for tampering of system secure settings in Bluebird kiosk application

    ВысокаяCVSS 8,5Эксплойта нетEPSS 0 %

    bluebird · com.bluebird.kiosk.launcher17 июл. 2025 г.

  • CVE-2024-13917
    33Наблюдать

    Intent Injection in Kruger&Matz AppLock application

    ВысокаяCVSS 8,3Эксплойта нетEPSS 0 %

    kruger&matz · com.pri.applock30 мая 2025 г.

  • CVE-2026-20990
    33Наблюдать

    Improper export of android application components in Secure Folder prior to SMR Mar-2026 Release 1 allows local attackers to launch arbitrar

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    samsung · android16 мар. 2026 г.

  • CVE-2026-20983
    33Наблюдать

    Improper export of android application components in Samsung Dialer prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitra

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    samsung · android4 февр. 2026 г.

  • CVE-2026-18994
    33Наблюдать

    A potential improper authorization vulnerability was reported in the Lenovo File Manager Android Application, distributed exclusively in the

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    lenovo · file manager application10 сент. 2026 г.

  • CVE-2025-68713
    32Наблюдать

    An issue was discovered in Rakuten Send Anywhere (File Transfer) for Android (com.estmob.android.sendanywhere) 23.2.9.

    ВысокаяCVSS 8,0Эксплойта нетEPSS 0 %

    15 июн. 2026 г.

  • CVE-2021-25400
    31Наблюдать

    Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    samsung · internet11 июн. 2021 г.

  • CVE-2025-32347
    31Наблюдать

    In onStart of BiometricEnrollIntroduction.java, there is a possible way to determine the device's location due to an unsafe PendingIntent.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    google · android4 сент. 2025 г.

  • CVE-2025-15464
    30Наблюдать

    KL-001-2026-01: yintibao Fun Print Mobile Unauthorized Access via Context Hijacking

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    yintibao · fun print8 янв. 2026 г.

  • CVE-2026-45528
    29Наблюдать

    In getManageSpaceActivityIntent of StorageManagerService.java, there is a possible LaunchAnyWhere chain due to an unsafe PendingIntent.

    ВысокаяCVSS 7,3Эксплойта нетEPSS 0 %

    google · android8 сент. 2026 г.

  • CVE-2026-54318
    28Наблюдать

    Home Assistant: Exported BroadcastReceiver allows local apps to spoof device location

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    home-assistant · home assistant companion23 июн. 2026 г.

  • CVE-2025-21080
    28Наблюдать

    Improper export of android application components in Dynamic Lockscreen prior to SMR Dec-2025 Release 1 allows local attackers to access fil

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    samsung · android1 дек. 2025 г.

  • CVE-2021-25388
    28Наблюдать

    Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary app.

    ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %

    google · android11 июн. 2021 г.

  • CVE-2026-57848
    27Наблюдать

    Stoat for Android Internal File Disclosure via Exported ShareTargetActivity URI Validation

    СредняяCVSS 6,8Эксплойта нетEPSS 0 %

    stoatchat · stoat for android18 июл. 2026 г.

  • CVE-2026-21063
    27Наблюдать

    Improper export of android application components in AppLock prior to SMR Aug-2026 Release 1 allows physical attackers to bypass app lock fu

    СредняяCVSS 6,8Эксплойта нетEPSS 0 %

    samsung · android10 авг. 2026 г.

  • CVE-2024-13915
    27Наблюдать

    Unrestricted Access to Exported Service in com.pri.factorytest

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    ulefone · com.pri.factorytest30 мая 2025 г.

  • CVE-2024-13916
    27Наблюдать

    Exposure of Applications' Encryption PINs in Kruger&Matz AppLock

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    kruger&matz · com.pri.applock30 мая 2025 г.

  • CVE-2025-20897
    27Наблюдать

    Improper access control in Secure Folder prior to version 1.9.20.50 in Android 14, 1.8.11.0 in Android 13, and 1.7.04.0 in Android 12 allows

    СредняяCVSS 6,8Эксплойта нетEPSS 0 %

    samsung mobile · secure folder4 февр. 2025 г.

  • CVE-2026-21054
    27Наблюдать

    Improper export of android application components in InputSharing prior to version 2.7.01.4 allows local attackers to access sharing data.

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    samsung mobile · inputsharing10 июл. 2026 г.

  • CVE-2026-3291
    27Наблюдать

    Samsung Print Service Plugin – Potential Information Disclosure

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    hp · samsung print service plugin6 мая 2026 г.

  • CVE-2026-21059
    27Наблюдать

    Improper export of android application components in Samsung Contacts prior to SMR Aug-2026 Release 1 allows local attackers to delete file

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    samsung · android10 авг. 2026 г.

  • CVE-2026-21032
    27Наблюдать

    Improper export of android application components in SmartHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attac

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    samsung · assistant5 июн. 2026 г.

  • CVE-2026-21033
    27Наблюдать

    Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local att

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    samsung · assistant5 июн. 2026 г.

Все классы уязвимостей