Android records
20 published records for vendor android.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-264 Permissions, Privileges, and Access Controls13
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-189 Numeric Errors2
- CWE-281 Improper Preservation of Permissions1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
20 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2020-8913No exploit | Local arbitrary code execution in splitinstall in Android's Play Coreandroid · play core library · CWE-281 | High8.8 | — | 2.9% | Aug 12, 2020 |
28Monitor | CVE-2009-0475No exploit | Integer underflow in the Huffman decoding functionality (pvmp3_huffman_parsing.cpp) in OpenCORE 2.0 and earlier allows remote attackers to candroid · opencore · CWE-189 | Medium6.8 | — | 2.2% | Feb 10, 2009 |
28Monitor | CVE-2009-0608No exploit | Integer overflow in the showLog function in fake_log_device.c in liblog in Open Handset Alliance Android 1.0 allows attackers to trigger a bandroid · android sdk · CWE-189 | High7.2 | — | 0.4% | Feb 17, 2009 |
25Monitor | CVE-2011-4699No exploit | The Ubermedia Twidroyd Legacy (com.twidroydlegacy) application 4.3.11 for Android does not properly protect data, which allows remote attackubermedia · twidroyd legacy · CWE-200 | Medium6.4 | — | 1.0% | Jan 25, 2012 |
25Monitor | CVE-2011-4697No exploit | The Xiaomi MiTalk Messenger (com.xiaomi.channel) application before 2.1.320 for Android does not properly protect data, which allows remote xiaomi · mitalk messenger · CWE-200 | Medium6.4 | — | 1.0% | Jan 25, 2012 |
25Monitor | CVE-2011-4866No exploit | The Kaixin001 (com.kaixin001.activity) application 1.3.1 and 1.3.3 for Android does not properly protect data, which allows remote attackerskaixin001 · kaixin001 · CWE-200 | Medium6.4 | — | 1.0% | Jan 25, 2012 |
25Monitor | CVE-2011-4698No exploit | The AndroidAppTools Easy Filter (com.phoneblocker.android) application 1.1 and 1.2 for Android does not properly protect data, which allows androidapptools · easy filter · CWE-200 | Medium6.4 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2008-7298No exploit | The Android browser in Android cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-middandroid · android browser · CWE-264 | Medium5.8 | — | 1.0% | Aug 9, 2011 |
23Monitor | CVE-2011-4700No exploit | The UberMedia UberSocial (com.twidroid) application 7.x before 7.2.4 for Android does not properly protect data, which allows remote attackeubermedia · ubersocial · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4703No exploit | The Limit My Call (com.limited.call.view) application 2.11 for Android does not properly protect data, which allows remote attackers to readandroid · android · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4704No exploit | The Voxofon (com.voxofon) application before 2.5.2 for Android does not properly protect data, which allows remote attackers to read or modivoxofon · voxofon · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4705No exploit | The Ming Blacklist Free (vc.software.blacklist) application 1.8.1 and 1.9.2.1 for Android does not properly protect data, which allows remotming · blacklist free · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4769No exploit | The 360 MobileSafe (com.qihoo360.mobilesafe) application 2.x before 2.3.0 for Android does not properly protect data, which allows remote at360 · mobilesafe · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4770No exploit | The QIWI Wallet (ru.mw) application before 1.14.2 for Android does not properly protect data, which allows remote attackers to read or modifqiwi · wallet · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4771No exploit | The Scan to PDF Free (com.scan.to.pdf.trial) application 2.0.4 for Android does not properly protect data, which allows remote attackers to android · android · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4772No exploit | The 360 KouXin (com.qihoo360.kouxin) application 1.5.3 for Android does not properly protect data, which allows remote attackers to read or 360 · kouxin · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4702No exploit | The Nimbuzz (com.nimbuzz) application 2.0.8 and 2.0.10 for Android does not properly protect data, which allows remote attackers to read or nimbuzz · nimbuzz · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4701No exploit | The CallConfirm (jp.gr.java_conf.ofnhwx.callconfirm) application 2.0.0 for Android does not properly protect data, which allows remote attacandroid · android · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4867No exploit | The Tencent QQPhoto (com.tencent.qqphoto) application 0.97 for Android does not properly protect data, which allows remote attackers to readtencent · qqpphoto · CWE-264 | Medium5.8 | — | 1.0% | Jan 25, 2012 |
23Monitor | CVE-2011-4773No exploit | The AnGuanJia (com.anguanjia.safe) application 2.10.343 for Android does not properly protect data, which allows remote attackers to read oranguanjia · anguanjia · CWE-264 | Medium5.8 | — | 0.9% | Jan 25, 2012 |
- CVE-2020-891336Monitor
Local arbitrary code execution in splitinstall in Android's Play Core
HighCVSS 8.8No exploitEPSS 3%android · play core libraryAug 12, 2020
- CVE-2009-047528Monitor
Integer underflow in the Huffman decoding functionality (pvmp3_huffman_parsing.cpp) in OpenCORE 2.0 and earlier allows remote attackers to c
MediumCVSS 6.8No exploitEPSS 2%android · opencoreFeb 10, 2009
- CVE-2009-060828Monitor
Integer overflow in the showLog function in fake_log_device.c in liblog in Open Handset Alliance Android 1.0 allows attackers to trigger a b
HighCVSS 7.2No exploitEPSS 0%android · android sdkFeb 17, 2009
- CVE-2011-469925Monitor
The Ubermedia Twidroyd Legacy (com.twidroydlegacy) application 4.3.11 for Android does not properly protect data, which allows remote attack
MediumCVSS 6.4No exploitEPSS 1%ubermedia · twidroyd legacyJan 25, 2012
- CVE-2011-469725Monitor
The Xiaomi MiTalk Messenger (com.xiaomi.channel) application before 2.1.320 for Android does not properly protect data, which allows remote
MediumCVSS 6.4No exploitEPSS 1%xiaomi · mitalk messengerJan 25, 2012
- CVE-2011-486625Monitor
The Kaixin001 (com.kaixin001.activity) application 1.3.1 and 1.3.3 for Android does not properly protect data, which allows remote attackers
MediumCVSS 6.4No exploitEPSS 1%kaixin001 · kaixin001Jan 25, 2012
- CVE-2011-469825Monitor
The AndroidAppTools Easy Filter (com.phoneblocker.android) application 1.1 and 1.2 for Android does not properly protect data, which allows
MediumCVSS 6.4No exploitEPSS 1%androidapptools · easy filterJan 25, 2012
- CVE-2008-729823Monitor
The Android browser in Android cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-midd
MediumCVSS 5.8No exploitEPSS 1%android · android browserAug 9, 2011
- CVE-2011-470023Monitor
The UberMedia UberSocial (com.twidroid) application 7.x before 7.2.4 for Android does not properly protect data, which allows remote attacke
MediumCVSS 5.8No exploitEPSS 1%ubermedia · ubersocialJan 25, 2012
- CVE-2011-470323Monitor
The Limit My Call (com.limited.call.view) application 2.11 for Android does not properly protect data, which allows remote attackers to read
MediumCVSS 5.8No exploitEPSS 1%android · androidJan 25, 2012
- CVE-2011-470423Monitor
The Voxofon (com.voxofon) application before 2.5.2 for Android does not properly protect data, which allows remote attackers to read or modi
MediumCVSS 5.8No exploitEPSS 1%voxofon · voxofonJan 25, 2012
- CVE-2011-470523Monitor
The Ming Blacklist Free (vc.software.blacklist) application 1.8.1 and 1.9.2.1 for Android does not properly protect data, which allows remot
MediumCVSS 5.8No exploitEPSS 1%ming · blacklist freeJan 25, 2012
- CVE-2011-476923Monitor
The 360 MobileSafe (com.qihoo360.mobilesafe) application 2.x before 2.3.0 for Android does not properly protect data, which allows remote at
MediumCVSS 5.8No exploitEPSS 1%360 · mobilesafeJan 25, 2012
- CVE-2011-477023Monitor
The QIWI Wallet (ru.mw) application before 1.14.2 for Android does not properly protect data, which allows remote attackers to read or modif
MediumCVSS 5.8No exploitEPSS 1%qiwi · walletJan 25, 2012
- CVE-2011-477123Monitor
The Scan to PDF Free (com.scan.to.pdf.trial) application 2.0.4 for Android does not properly protect data, which allows remote attackers to
MediumCVSS 5.8No exploitEPSS 1%android · androidJan 25, 2012
- CVE-2011-477223Monitor
The 360 KouXin (com.qihoo360.kouxin) application 1.5.3 for Android does not properly protect data, which allows remote attackers to read or
MediumCVSS 5.8No exploitEPSS 1%360 · kouxinJan 25, 2012
- CVE-2011-470223Monitor
The Nimbuzz (com.nimbuzz) application 2.0.8 and 2.0.10 for Android does not properly protect data, which allows remote attackers to read or
MediumCVSS 5.8No exploitEPSS 1%nimbuzz · nimbuzzJan 25, 2012
- CVE-2011-470123Monitor
The CallConfirm (jp.gr.java_conf.ofnhwx.callconfirm) application 2.0.0 for Android does not properly protect data, which allows remote attac
MediumCVSS 5.8No exploitEPSS 1%android · androidJan 25, 2012
- CVE-2011-486723Monitor
The Tencent QQPhoto (com.tencent.qqphoto) application 0.97 for Android does not properly protect data, which allows remote attackers to read
MediumCVSS 5.8No exploitEPSS 1%tencent · qqpphotoJan 25, 2012
- CVE-2011-477323Monitor
The AnGuanJia (com.anguanjia.safe) application 2.10.343 for Android does not properly protect data, which allows remote attackers to read or
MediumCVSS 5.8No exploitEPSS 1%anguanjia · anguanjiaJan 25, 2012