CVE-2026-0078EPSS p0.2%
CVE-2026-0078CVE-2026-0078
google / android
Description
In setGlobalProxy of DevicePolicyManagerService.java, there is a possible desync in persistence due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Scoring
| CVSS | 7.8 () |
| Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.08% probability of exploitation · percentile 0.2% · 2026-06-20T12:03:10Z |
| Last modified | 2026-06-03 |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.