CVE-2021-39696
HIGHAndroid 10-12 - Local Privilege Escalation via Task.java Confused Deputy
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-39696. PoCs published by nidhihcl.
AI-analyzed exploit summary This repository contains test cases and performance tests related to Android's autofill framework, specifically targeting CVE-2021-39696. The code includes test scenarios for autofill behavior but does not contain a direct exploit or malicious payload.
Description
In Task.java, there is a possible escalation of privilege due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12Android ID: A-185810717
Exploits (1)
This repository contains test cases and performance tests related to Android's autofill framework, specifically targeting CVE-2021-39696. The code includes test scenarios for autofill behavior but does not contain a direct exploit or malicious payload.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H