VDB
CVE-2022-20302
CVE-2022-20302
PUBLISHED
CVSS 7.599999904632568 HIGH
In Settings, there is a possible way to bypass factory reset protections due to a sandbox escape. This could lead to local escalation of privilege if the attacker has physical access to the device, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-200746457
EPSS 0.16% · 6.0th percentile
Risk Scores
CVSS 3.1
7.599999904632568
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS Score
0.16%
6.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| android | 13.0 | |
| n/a | Android | Android-13 |
Timeline
- Aug 11, 2022 CVE Published
- Aug 12, 2022 EPSS Score
- Aug 16, 2022 EPSS Score
- Sep 27, 2022 EPSS Score
- Nov 13, 2022 EPSS Score
- Dec 29, 2022 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 31, 2023 EPSS Score
- Jul 2, 2023 EPSS Score
- Aug 17, 2023 EPSS Score
- Oct 2, 2023 EPSS Score