2024

2023

2022

2021

2020

2019

CVE-2019-9467 (v3: 6.7) 13 Nov 2019
In the Bootloader, there is a possible kernel command injection due to missing command sanitization. This could lead to a local elevation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-80316910

2018

CVE-2018-0506 (v3: 9.8) 26 Jan 2018
Nootka 1.4.4 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

2017

CVE-2017-10904 (v3: 9.8) 16 Dec 2017
Qt for Android prior to 5.9.0 allows remote attackers to execute arbitrary OS commands via unspecified vectors.
CVE-2017-3761 (v3: 9.8) 17 Oct 2017
The Lenovo Service Framework Android application executes some system commands without proper sanitization of external input. In certain cases, this could lead to command injection which, in turn, could lead to remote code execution.

2016

2015

CVE-2015-2980 (v2: 6.8) 8 Aug 2015
The Yodobashi application 1.2.1.0 and earlier for Android allows remote attackers to execute arbitrary Java methods, and consequently obtain sensitive information or execute OS commands, via a crafted HTML document.