CVE-2026-81301
Ekia File Manager 1.2.7 exposes com.ekia.filecontrolmanager.OpenFileProvider as an exported Android ContentProvider without requiring caller permissions. The provider maps the caller-controlled URI path directly to a filesystem path and passes it to new File(...). It then supports query(), openFile(), and delete() operations. Because the provider is exported and lacks android:permission, android:readPermission, or android:writePermission, another local application can access the provider authority and cause File Manager's process to read, create, overwrite, or delete files that are accessible to that process.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.5
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
- EPSS probability
- 0.11%
- CWE
- CWE-926
- Published
- 2026-09-14
- Last modified
- 2026-09-14
Affected products
- Ekia File Manager
Weakness type
Related vulnerabilities
- CVE-2025-5344 — Exposed AIDL service allowing for tampering of system secure settings in Bluebird kiosk application
- CVE-2024-13917 — Intent Injection in Kruger&Matz AppLock application
- CVE-2023-41960 — The vulnerability allows an unprivileged(untrusted) third-party application to interact with a content-provider unsafely
- CVE-2021-25388 — Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary a
- CVE-2026-18994 — A potential improper authorization vulnerability was reported in the Lenovo File Manager Android Application, distribute
- CVE-2024-13916 — Exposure of Applications' Encryption PINs in Kruger&Matz AppLock
- CVE-2024-13915 — Unrestricted Access to Exported Service in com.pri.factorytest
- CVE-2021-25397 — An improper access control vulnerability in TelephonyUI prior to SMR MAY-2021 Release 1 allows local attackers to write