Information Disclosure Vulnerability in Android Settings
CVE-2023-21383
5.5MEDIUM
Summary
A specific weakness exists within the Android Settings that may allow users to inadvertently transmit extra data via ambiguous prompts. This situation could facilitate local information disclosure without requiring additional execution privileges. Exploitation hinges on user interaction, highlighting the importance of awareness and caution when handling data prompts.
Affected Version(s)
Android 14
Get notified when SecurityVulnerability.io launches alerting 🔔
Well keep you posted 📧
News Articles
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
- 📰
First article discovered by GBHackers News
Vulnerability published
Vulnerability Reserved