PT-2025-36052 · Unknown · Chooseractivity

Published

2025-09-01

·

Updated

2025-09-05

·

CVE-2025-48526

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions ChooserActivity (affected versions not specified)
Description An application may launch the ChooserActivity in another profile due to improper input validation within the createMultiProfilePagerAdapter function of ChooserActivity.java. This could lead to local privilege escalation without requiring additional execution privileges or user interaction.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

ASB-A-407764858
BDU:2025-11579
CVE-2025-48526

Affected Products

Chooseractivity