Vulnerability in Sony Keyaki_kddi Android Devices due to App Installation Flaw
CVE-2019-15416
7.8HIGH
What is CVE-2019-15416?
The vulnerability in Sony's Keyaki_kddi Android device arises from a flaw in a pre-installed app (com.kddi.android.packageinstaller). This flaw allows other pre-installed apps on the device to exploit accessible app components, facilitating unauthorized app installations. Any pre-installed app capable of obtaining the necessary signature or system permissions can access these features, thus posing a significant security risk by enabling apps to execute actions they shouldn't be allowed to.