Skip to content
COOEY

EXPOSURES › CVE-2023-20963

CVE-2023-20963

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2023-04-13 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2023-20963 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 exploited-in-wildunpatched

Android Framework Privilege Escalation Vulnerability

The Android Framework contains a vulnerability that allows for privilege escalation after updating an app to a higher Target SDK with no additional execution privileges needed. This can lead to unauthorized access and potential data breaches.

Shame score — This vulnerability allows for privilege escalation, which can lead to unauthorized access and potential data breaches.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Android Framework contains an unspecified vulnerability that allows for privilege escalation after updating an app to a higher Target SDK with no additional execution privileges needed.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.