VYPR
High severity7.3NVD Advisory· Published Jul 13, 2023· Updated Jun 17, 2026

CVE-2023-21251

CVE-2023-21251

Description

In onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper input validation. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Google/Androidv55 versions
    13+ 4 more
    • (no CPE)range: 13
    • cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:13.1:*:*:*:*:*:*:*
  • Google/Platformllm-fuzzy

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.