
Cloud Vulnerability DB
A community-led vulnerabilities database
In netdiag, there is a possible information disclosure vulnerability (CVE-2021-0403) due to a missing permission check. The vulnerability affects Android 11 systems and requires System execution privileges for exploitation. The issue was discovered and reported in late 2020, with the CVE being assigned on November 6, 2020 (CVE Details).
The vulnerability exists in the netdiag component of Android 11 systems. It stems from a missing permission check that could lead to information disclosure. The vulnerability requires System execution privileges to be exploited, indicating a relatively high barrier for exploitation. A patch was developed and identified as ALPS05475124 (CVE Details).
If successfully exploited, this vulnerability could result in local information disclosure. The scope of the information that could be exposed is limited to data accessible with System execution privileges (CVE Details).
The vulnerability requires System execution privileges for exploitation, which significantly limits its potential abuse. User interaction is not needed for exploitation once the necessary privileges are obtained (CVE Details).
The vulnerability has been addressed through a patch identified as ALPS05475124. Users should ensure their Android 11 systems are updated with the latest security patches (CVE Details).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."