CyberSec.Space Logo
返回 CVE 浏览器

CVE-2025-48633

🔥 Known Exploited (CISA KEV)MEDIUM
5.5
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2025-12-08
Last Modified2026-06-17
Data SourcesNVDCISA KEV

Vulnerability Description

In hasAccountsOnAnyUser of DevicePolicyManagerService.java, there is a possible way to add a Device Owner after provisioning due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected Platforms (CPE)

💻
Google

Android

= 13.0= 14.0= 15.0= 16.0

References & Advisories

相關資安分析文章

相关漏洞威胁