CVE Radar Logo
CVERadar
CVE Radar Logo
CVERadar

CVE-2024-47016

Medium Severity
SVRS
30/100

CVSSv3
NA/10

EPSS
0.00009/1

CVE-2024-47016: A privilege escalation vulnerability due to an insecure default value allows local attackers to gain elevated privileges without requiring additional permissions or user interaction. This security flaw could let a malicious actor compromise the system. Despite a CVSS score of 0, indicating minimal base severity, the presence of the "In The Wild" tag suggests active exploitation. SOCRadar's SVRS of 30 indicates a low-to-medium risk level. While not immediately critical, the potential for exploitation and privilege escalation warrants further investigation and patching to prevent unauthorized access and maintain system integrity. Addressing this CVE will mitigate potential risks of unauthorized actions on affected systems. Immediate action should be taken.

In The Wild
2024-10-25

2024-10-25

Indicators of Compromise

No IOCs found for this CVE

Exploits

No exploits found for this CVE

Enhance Your CVE Management with SOCRadar Vulnerability Intelligence
Get comprehensive CVE details, real-time notifications, and proactive threat management all in one platform.
CVE Details
Access comprehensive CVE information instantly
Real-time Tracking
Subscribe to CVEs and get instant updates
Exploit Analysis
Monitor related APT groups and threats
IOC Tracking
Analyze and track CVE-related IOCs

News

CVE-2024-47016 | Google Android Local Privilege Escalation
vuldb.com2024-10-26
CVE-2024-47016 | Google Android Local Privilege Escalation | A vulnerability classified as problematic has been found in Google Android. This affects an unknown part. The manipulation leads to Local Privilege Escalation. This vulnerability is uniquely identified as CVE-2024-47016. The attack needs to be approached locally. There is no exploit available. It is recommended to apply a patch to fix this issue.
cve-2024-47016
domains
urls
cves

Social Media

CVE-2024-47016 there is a possible privilege escalation due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges ne… https://t.co/BsiRbOqBIL
0
0
0

Affected Software

No affected software found for this CVE

References

ReferenceLink
[email protected]https://source.android.com/security/bulletin/pixel/2024-10-01

CWE Details

CWE IDCWE NameDescription
CWE-276Incorrect Default PermissionsDuring installation, installed file permissions are set to allow anyone to modify those files.

CVE Radar

Real-time CVE Intelligence & Vulnerability Management Platform

CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.

Get Free Vulnerability Intelligence AccessAccess real-time CVE monitoring, exploit analysis, and threat intelligence