CVE-2021-1004
published 2021-12-15CVE-2021-1004: In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing…
PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.10%
1.2th percentile
In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-197749180
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| platform | packages_modules_wifi | >= 12:0 < 12:2021-12-01 | 12:2021-12-01 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hq36-29fh-grcg: In getConfiguredNetworks of WifiServiceImpl
ghsa_unreviewed·2021-12-16
CVE-2021-1004 [HIGH] CWE-281 GHSA-hq36-29fh-grcg: In getConfiguredNetworks of WifiServiceImpl
In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-197749180
OSV
CVE-2021-1004: In getConfiguredNetworks of WifiServiceImpl
osv·2021-12-01
CVE-2021-1004 CVE-2021-1004: In getConfiguredNetworks of WifiServiceImpl
In getConfiguredNetworks of WifiServiceImpl.java, there is a possible way to determine whether an app is installed, without query permissions, due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
Nuclei
XStream <1.4.16 - Remote Code Execution
nuclei·CVSS 9.1
CVE-2021-21351 [MEDIUM] XStream <1.4.16 - Remote Code Execution
XStream
ysomap
-10086
false
false
false
false
false
1008
true
1000
0
2
0
0
0
true
1004
false
rmi://{{interactsh-url}}/test
com.sun.rowset.JdbcRowSetImpl
setAutoCommit
boolean
false
false
false
-1
false
false
1
1
false
ysomap
test
matchers-condition: and
matchers:
- type: word
part: interactsh_protocol
words:
- "dns"
- type: word
part: body
words:
- "timestamp"
- "com.thoughtworks.xstream"
condition: or
- type: word
part: header
words:
- "application/json"
- type: status
status:
- 500
# digest: 4a0a0047304502204c4a8b66341a4076b23df776ca5d113607a36cbcd511f692edf2c2b37a48805a022100c4dfc0f9910ceb79ff4ef0f5e9f089d3b725b40fe3d29a7988216aec529085de:922c64590222798bb761d5b6d8e72950
No writeups or analysis indexed.
2021-12-15
Published