VDB
CVE-2023-21441
CVE-2023-21441
PUBLISHED
CVSS 7.400000095367432 HIGH
Insufficient Verification of Data Authenticity vulnerability in Routine prior to versions 2.6.30.6 in Android Q(10), 3.1.21.10 in Android R(11) and 3.5.2.23 in Android S(12) allows local attacker to access protected files via unused code.
EPSS 0.10% · 1.0th percentile
Risk Scores
CVSS 3.1
7.400000095367432
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N
EPSS Score
0.10%
1.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| samsung | android | 10.0, 10.0, 10.0 |
| Samsung Mobile | Routine | unspecified, * |
Timeline
- Feb 9, 2023 CVE Published
- Feb 10, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 22, 2023 EPSS Score
- May 1, 2023 EPSS Score
- Jun 10, 2023 EPSS Score
- Jul 19, 2023 EPSS Score
- Aug 28, 2023 EPSS Score
- Oct 7, 2023 EPSS Score
- Nov 16, 2023 EPSS Score
- Dec 26, 2023 EPSS Score
- Feb 4, 2024 EPSS Score