VDB

CVE-2022-38698

CVE-2022-38698 PUBLISHED CVSS 7.800000190734863 HIGH

In messaging service, there is a missing permission check. This could lead to elevation of privilege in contacts service with no additional execution privileges needed.

EPSS 0.16% · 5.1th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.16%
5.1th percentile

Affected Products

VendorProductVersions
googleandroid10.0, 11.0, 12.0
Unisoc (Shanghai) Technologies Co., Ltd.SC9863A/SC9832E/SC7731E/T610/T310/T606/T760/T610/T618/T606/T612/T616/T760/T770/T820/S8000Android10/Android11/Android12

Timeline

  • Oct 14, 2022 CVE Published
  • Oct 15, 2022 EPSS Score
  • Oct 19, 2022 EPSS Score
  • Nov 28, 2022 EPSS Score
  • Jan 11, 2023 EPSS Score
  • Feb 24, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 9, 2023 EPSS Score
  • May 23, 2023 EPSS Score
  • Aug 19, 2023 EPSS Score
  • Oct 2, 2023 EPSS Score
  • Nov 15, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›