Vulnerability Details CVE-2023-21466
PendingIntent hijacking vulnerability in CertificatePolicy in framework prior to SMR Apr-2023 Release 1 allows local attackers to access contentProvider without proper permission.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 0.4%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2023-21466
-
cpe:2.3:o:samsung:android:11.0
-
cpe:2.3:o:samsung:android:12.0
-
cpe:2.3:o:samsung:android:13.0