CVE-2018-9468
HIGHAndroid - Arbitrary File Read and Write via DownloadManager Permissions Bypass
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2018-9468. PoCs published by IOActive.
AI-analyzed exploit summary This PoC exploits CVE-2018-9468, a permission bypass in Android's Download Provider, allowing an attacker to overwrite downloaded files with malicious content. The exploit monitors the Download Provider for new files and replaces them with predefined payloads based on file extensions.
Description
In query of DownloadManager.java, there is a possible read/write of arbitrary files due to a permissions bypass. This could lead to local information disclosure and file rewriting with no additional execution privileges needed. User interaction is not needed for exploitation.
Exploits (1)
This PoC exploits CVE-2018-9468, a permission bypass in Android's Download Provider, allowing an attacker to overwrite downloaded files with malicious content. The exploit monitors the Download Provider for new files and replaces them with predefined payloads based on file extensions.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N