CWE-926 · 127 kayıt
Improper Export of Android Application Components
Bu sınıftaki CVE’ler
127 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
34İzleyin | CVE-2026-21055Kavram kanıtı | Improper export of android application components in Bixby prior to version 4.0.70.8 allows local attackers to execute arbitrary commands wisamsung mobile · bixby · CWE-926 | Yüksek8,5 | — | %0,2 | 10 Tem 2026 |
34İzleyin | CVE-2026-81301İstismar yok | Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file accessekia · file manager · CWE-926 | Yüksek8,5 | — | %0,2 | 14 Eyl 2026 |
34İzleyin | CVE-2025-5344İstismar yok | Exposed AIDL service allowing for tampering of system secure settings in Bluebird kiosk applicationbluebird · com.bluebird.kiosk.launcher · CWE-926 | Yüksek8,5 | — | %0,1 | 17 Tem 2025 |
33İzleyin | CVE-2024-13917İstismar yok | Intent Injection in Kruger&Matz AppLock applicationkruger&matz · com.pri.applock · CWE-926 | Yüksek8,3 | — | %0,2 | 30 May 2025 |
33İzleyin | CVE-2026-20990İstismar yok | Improper export of android application components in Secure Folder prior to SMR Mar-2026 Release 1 allows local attackers to launch arbitrarsamsung · android · CWE-926 | Yüksek8,4 | — | %0,2 | 16 Mar 2026 |
33İzleyin | CVE-2026-20983İstismar yok | Improper export of android application components in Samsung Dialer prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitrasamsung · android · CWE-926 | Yüksek8,4 | — | %0,1 | 4 Şub 2026 |
33İzleyin | CVE-2026-18994İstismar yok | A potential improper authorization vulnerability was reported in the Lenovo File Manager Android Application, distributed exclusively in thelenovo · file manager application · CWE-926 | Yüksek8,4 | — | %0,1 | 10 Eyl 2026 |
32İzleyin | CVE-2025-68713İstismar yok | An issue was discovered in Rakuten Send Anywhere (File Transfer) for Android (com.estmob.android.sendanywhere) 23.2.9.CWE-926 | Yüksek8,0 | — | %0,3 | 15 Haz 2026 |
31İzleyin | CVE-2021-25400İstismar yok | Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action.samsung · internet · CWE-926 | Yüksek7,8 | — | %0,2 | 11 Haz 2021 |
31İzleyin | CVE-2025-32347İstismar yok | In onStart of BiometricEnrollIntroduction.java, there is a possible way to determine the device's location due to an unsafe PendingIntent.google · android · CWE-926 | Yüksek7,8 | — | %0,1 | 4 Eyl 2025 |
30İzleyin | CVE-2025-15464İstismar yok | KL-001-2026-01: yintibao Fun Print Mobile Unauthorized Access via Context Hijackingyintibao · fun print · CWE-926 | Yüksek7,5 | — | %0,5 | 8 Oca 2026 |
29İzleyin | CVE-2026-45528İstismar yok | In getManageSpaceActivityIntent of StorageManagerService.java, there is a possible LaunchAnyWhere chain due to an unsafe PendingIntent.google · android · CWE-926 | Yüksek7,3 | — | %0,1 | 8 Eyl 2026 |
28İzleyin | CVE-2026-54318İstismar yok | Home Assistant: Exported BroadcastReceiver allows local apps to spoof device locationhome-assistant · home assistant companion · CWE-926 | Yüksek7,1 | — | %0,2 | 23 Haz 2026 |
28İzleyin | CVE-2025-21080İstismar yok | Improper export of android application components in Dynamic Lockscreen prior to SMR Dec-2025 Release 1 allows local attackers to access filsamsung · android · CWE-926 | Yüksek7,1 | — | %0,1 | 1 Ara 2025 |
28İzleyin | CVE-2021-25388İstismar yok | Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary app.google · android · CWE-926 | Yüksek7,1 | — | %0,1 | 11 Haz 2021 |
27İzleyin | CVE-2026-57848İstismar yok | Stoat for Android Internal File Disclosure via Exported ShareTargetActivity URI Validationstoatchat · stoat for android · CWE-926 | Orta6,8 | — | %0,2 | 18 Tem 2026 |
27İzleyin | CVE-2026-21063İstismar yok | Improper export of android application components in AppLock prior to SMR Aug-2026 Release 1 allows physical attackers to bypass app lock fusamsung · android · CWE-926 | Orta6,8 | — | %0,2 | 10 Ağu 2026 |
27İzleyin | CVE-2024-13915İstismar yok | Unrestricted Access to Exported Service in com.pri.factorytestulefone · com.pri.factorytest · CWE-926 | Orta6,9 | — | %0,2 | 30 May 2025 |
27İzleyin | CVE-2024-13916İstismar yok | Exposure of Applications' Encryption PINs in Kruger&Matz AppLockkruger&matz · com.pri.applock · CWE-926 | Orta6,9 | — | %0,2 | 30 May 2025 |
27İzleyin | CVE-2025-20897İstismar yok | Improper access control in Secure Folder prior to version 1.9.20.50 in Android 14, 1.8.11.0 in Android 13, and 1.7.04.0 in Android 12 allowssamsung mobile · secure folder · CWE-926 | Orta6,8 | — | %0,2 | 4 Şub 2025 |
27İzleyin | CVE-2026-21054İstismar yok | Improper export of android application components in InputSharing prior to version 2.7.01.4 allows local attackers to access sharing data.samsung mobile · inputsharing · CWE-926 | Orta6,9 | — | %0,2 | 10 Tem 2026 |
27İzleyin | CVE-2026-3291İstismar yok | Samsung Print Service Plugin – Potential Information Disclosurehp · samsung print service plugin · CWE-926 | Orta6,9 | — | %0,1 | 6 May 2026 |
27İzleyin | CVE-2026-21059İstismar yok | Improper export of android application components in Samsung Contacts prior to SMR Aug-2026 Release 1 allows local attackers to delete file samsung · android · CWE-926 | Orta6,9 | — | %0,1 | 10 Ağu 2026 |
27İzleyin | CVE-2026-21033İstismar yok | Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attsamsung · assistant · CWE-926 | Orta6,9 | — | %0,1 | 5 Haz 2026 |
27İzleyin | CVE-2026-21032İstismar yok | Improper export of android application components in SmartHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attacsamsung · assistant · CWE-926 | Orta6,9 | — | %0,1 | 5 Haz 2026 |
- CVE-2026-2105534İzleyin
Improper export of android application components in Bixby prior to version 4.0.70.8 allows local attackers to execute arbitrary commands wi
YüksekCVSS 8,5Kavram kanıtıEPSS %0samsung mobile · bixby10 Tem 2026
- CVE-2026-8130134İzleyin
Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access
YüksekCVSS 8,5İstismar yokEPSS %0ekia · file manager14 Eyl 2026
- CVE-2025-534434İzleyin
Exposed AIDL service allowing for tampering of system secure settings in Bluebird kiosk application
YüksekCVSS 8,5İstismar yokEPSS %0bluebird · com.bluebird.kiosk.launcher17 Tem 2025
- CVE-2024-1391733İzleyin
Intent Injection in Kruger&Matz AppLock application
YüksekCVSS 8,3İstismar yokEPSS %0kruger&matz · com.pri.applock30 May 2025
- CVE-2026-2099033İzleyin
Improper export of android application components in Secure Folder prior to SMR Mar-2026 Release 1 allows local attackers to launch arbitrar
YüksekCVSS 8,4İstismar yokEPSS %0samsung · android16 Mar 2026
- CVE-2026-2098333İzleyin
Improper export of android application components in Samsung Dialer prior to SMR Feb-2026 Release 1 allows local attackers to launch arbitra
YüksekCVSS 8,4İstismar yokEPSS %0samsung · android4 Şub 2026
- CVE-2026-1899433İzleyin
A potential improper authorization vulnerability was reported in the Lenovo File Manager Android Application, distributed exclusively in the
YüksekCVSS 8,4İstismar yokEPSS %0lenovo · file manager application10 Eyl 2026
- CVE-2025-6871332İzleyin
An issue was discovered in Rakuten Send Anywhere (File Transfer) for Android (com.estmob.android.sendanywhere) 23.2.9.
YüksekCVSS 8,0İstismar yokEPSS %015 Haz 2026
- CVE-2021-2540031İzleyin
Intent redirection vulnerability in Samsung Internet prior to version 14.0.1.20 allows attacker to execute privileged action.
YüksekCVSS 7,8İstismar yokEPSS %0samsung · internet11 Haz 2021
- CVE-2025-3234731İzleyin
In onStart of BiometricEnrollIntroduction.java, there is a possible way to determine the device's location due to an unsafe PendingIntent.
YüksekCVSS 7,8İstismar yokEPSS %0google · android4 Eyl 2025
- CVE-2025-1546430İzleyin
KL-001-2026-01: yintibao Fun Print Mobile Unauthorized Access via Context Hijacking
YüksekCVSS 7,5İstismar yokEPSS %1yintibao · fun print8 Oca 2026
- CVE-2026-4552829İzleyin
In getManageSpaceActivityIntent of StorageManagerService.java, there is a possible LaunchAnyWhere chain due to an unsafe PendingIntent.
YüksekCVSS 7,3İstismar yokEPSS %0google · android8 Eyl 2026
- CVE-2026-5431828İzleyin
Home Assistant: Exported BroadcastReceiver allows local apps to spoof device location
YüksekCVSS 7,1İstismar yokEPSS %0home-assistant · home assistant companion23 Haz 2026
- CVE-2025-2108028İzleyin
Improper export of android application components in Dynamic Lockscreen prior to SMR Dec-2025 Release 1 allows local attackers to access fil
YüksekCVSS 7,1İstismar yokEPSS %0samsung · android1 Ara 2025
- CVE-2021-2538828İzleyin
Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary app.
YüksekCVSS 7,1İstismar yokEPSS %0google · android11 Haz 2021
- CVE-2026-5784827İzleyin
Stoat for Android Internal File Disclosure via Exported ShareTargetActivity URI Validation
OrtaCVSS 6,8İstismar yokEPSS %0stoatchat · stoat for android18 Tem 2026
- CVE-2026-2106327İzleyin
Improper export of android application components in AppLock prior to SMR Aug-2026 Release 1 allows physical attackers to bypass app lock fu
OrtaCVSS 6,8İstismar yokEPSS %0samsung · android10 Ağu 2026
- CVE-2024-1391527İzleyin
Unrestricted Access to Exported Service in com.pri.factorytest
OrtaCVSS 6,9İstismar yokEPSS %0ulefone · com.pri.factorytest30 May 2025
- CVE-2024-1391627İzleyin
Exposure of Applications' Encryption PINs in Kruger&Matz AppLock
OrtaCVSS 6,9İstismar yokEPSS %0kruger&matz · com.pri.applock30 May 2025
- CVE-2025-2089727İzleyin
Improper access control in Secure Folder prior to version 1.9.20.50 in Android 14, 1.8.11.0 in Android 13, and 1.7.04.0 in Android 12 allows
OrtaCVSS 6,8İstismar yokEPSS %0samsung mobile · secure folder4 Şub 2025
- CVE-2026-2105427İzleyin
Improper export of android application components in InputSharing prior to version 2.7.01.4 allows local attackers to access sharing data.
OrtaCVSS 6,9İstismar yokEPSS %0samsung mobile · inputsharing10 Tem 2026
- CVE-2026-329127İzleyin
Samsung Print Service Plugin – Potential Information Disclosure
OrtaCVSS 6,9İstismar yokEPSS %0hp · samsung print service plugin6 May 2026
- CVE-2026-2105927İzleyin
Improper export of android application components in Samsung Contacts prior to SMR Aug-2026 Release 1 allows local attackers to delete file
OrtaCVSS 6,9İstismar yokEPSS %0samsung · android10 Ağu 2026
- CVE-2026-2103327İzleyin
Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local att
OrtaCVSS 6,9İstismar yokEPSS %0samsung · assistant5 Haz 2026
- CVE-2026-2103227İzleyin
Improper export of android application components in SmartHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attac
OrtaCVSS 6,9İstismar yokEPSS %0samsung · assistant5 Haz 2026