VDB
CVE-2023-42645
CVE-2023-42645
PUBLISHED
CVSS 5.5 MEDIUM
In sim service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed
EPSS 0.08% · 0.3th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.08%
0.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| android | 11.0 | |
| Unisoc (Shanghai) Technologies Co., Ltd. | T760/T770/T820/S8000 | * |
Timeline
- Nov 1, 2023 CVE Published
- Nov 2, 2023 EPSS Score
- Dec 3, 2023 EPSS Score
- Jan 2, 2024 EPSS Score
- Feb 2, 2024 EPSS Score
- Mar 4, 2024 EPSS Score
- Apr 4, 2024 EPSS Score
- May 4, 2024 EPSS Score
- Jun 4, 2024 EPSS Score
- Jul 5, 2024 EPSS Score
- Aug 5, 2024 EPSS Score
- Sep 4, 2024 EPSS Score