|
266291
|
5.5 |
MEDIUM
Local
|
google
|
android
|
An elevation of privilege vulnerability in the Account Manager Service in Android 7.0 before 2016-11-01 could enable a local malicious application to retrieve sensitive information without user inter…
|
CWE-200
Information Exposure
|
CVE-2016-6718
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266292
|
7.0 |
HIGH
Local
|
google
|
android
|
An elevation of privilege vulnerability in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malic…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6717
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266293
|
5.5 |
MEDIUM
Local
|
google
|
android
|
An elevation of privilege vulnerability in the AOSP Launcher in Android 7.0 before 2016-11-01 could allow a local malicious application to create shortcuts that have elevated privileges without the u…
|
CWE-284
Improper Access Control
|
CVE-2016-6716
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266294
|
5.5 |
MEDIUM
Local
|
google
|
android
|
An elevation of privilege vulnerability in the Framework APIs in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could allow a local…
|
CWE-284 CWE-275
Improper Access Control Permission Issues
|
CVE-2016-6715
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266295
|
5.5 |
MEDIUM
Local
|
google
|
android
|
A remote denial of service vulnerability in Mediaserver in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or r…
|
CWE-284
Improper Access Control
|
CVE-2016-6714
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266296
|
5.5 |
MEDIUM
Local
|
google
|
android
|
A remote denial of service vulnerability in Mediaserver in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable an attacker to use a specially crafted file to cause a device hang or r…
|
CWE-284
Improper Access Control
|
CVE-2016-6713
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266297
|
5.5 |
MEDIUM
Local
|
google
|
android
|
An information disclosure vulnerability in the download manager in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious appl…
|
CWE-200
Information Exposure
|
CVE-2016-6710
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266298
|
5.9 |
MEDIUM
Network
|
google
|
android
|
An information disclosure vulnerability in Conscrypt and BoringSSL in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable a man-in-the-middle attacker to gain access to sensitive inf…
|
CWE-200
Information Exposure
|
CVE-2016-6709
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266299
|
5.5 |
MEDIUM
Local
|
google
|
android
|
An elevation of privilege in the System UI in Android 7.0 before 2016-11-01 could enable a local malicious user to bypass the security prompt of your work profile in Multi-Window mode. This issue is …
|
CWE-254 CWE-284
7PK - Security Features Improper Access Control
|
CVE-2016-6708
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266300
|
7.8 |
HIGH
Local
|
google
|
android
|
An elevation of privilege vulnerability in System Server in Android 6.x before 2016-11-01 and 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the con…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-6707
|
2024-11-21 11:56 |
2016-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|