In the Framework, it is possible to set up BROWSEABLE intents to take over certain URLs. This could lead to remote information disclosure of sensitive URLs with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-110150807
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/android-10 | Vendor Advisory |
https://source.android.com/security/bulletin/android-10 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2019-09-27 19:15
Updated : 2024-11-21 04:51
NVD link : CVE-2019-9428
Mitre link : CVE-2019-9428
CVE.ORG link : CVE-2019-9428
JSON object : View
Products Affected
- android
CWE