PT-2025-36052 · Unknown · Chooseractivity

CVE-2025-48526

·

Publicado

2025-09-01

·

Atualizado

2025-09-05

CVSS v3.1

4.0

Média

VetorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions ChooserActivity (affected versions not specified)
Description An application may launch the ChooserActivity in another profile due to improper input validation within the createMultiProfilePagerAdapter function of ChooserActivity.java. This could lead to local privilege escalation without requiring additional execution privileges or user interaction.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Privilege Assignment

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ASB-A-407764858
BDU:2025-11579
CVE-2025-48526

Produtos afetados

Chooseractivity