VDB
CVE-2022-20241
CVE-2022-20241
PUBLISHED
CVSS 3.299999952316284 LOW
In Messaging, there is a possible way to attach a private file to an SMS message due to improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-217185011
EPSS 0.10% · 0.8th percentile
Risk Scores
CVSS 3.1
3.299999952316284
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
0.10%
0.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | Android | Android-13 |
| android | 13.0.0 |
Timeline
- Aug 11, 2022 CVE Published
- Aug 12, 2022 EPSS Score
- Aug 16, 2022 EPSS Score
- Sep 27, 2022 EPSS Score
- Nov 12, 2022 EPSS Score
- Dec 29, 2022 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 31, 2023 EPSS Score
- Jul 1, 2023 EPSS Score
- Aug 16, 2023 EPSS Score
- Oct 2, 2023 EPSS Score