CWE-926
82 CVEs • Abstraction: Variant
Improper Export of Android Application Components
The Android application exports a component for use by other applications, but does not properly restrict which applications can launch the component or access the data it contains.
CVEs (82)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary app. |
Intent redirection vulnerability in Gallery prior to version 5.4.16.1 allows attacker to execute privileged action. |