Description
In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe deserialization. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44728 | In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe deserialization. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation. |
References
History
No history.
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-09-09T14:49:22.331Z
Reserved: 2023-08-09T02:29:31.894Z
Link: CVE-2023-40121
Updated: 2024-08-02T18:24:55.530Z
Status : Modified
Published: 2023-10-27T21:15:08.717
Modified: 2024-11-21T08:18:49.030
Link: CVE-2023-40121
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD