CVE-2026-86701
Android application "ManabiPocket for Parents" contains an improper access control vulnerability in one of its components. A malicious application installed on the user's Android device may exploit the affected component via an Intent, potentially allowing the malicious application to obtain sensitive information from the affected application.
Scoring
- Severity
- LOW
- CVSS base score
- 2.5
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
- EPSS probability
- 0.10%
- CWE
- CWE-926
- Published
- 2026-09-15
- Last modified
- 2026-09-15
Affected products
- NTT DOCOMO BUSINESS, Inc. ManabiPocket for Parents
Weakness type
Related vulnerabilities
- CVE-2025-5344 — Exposed AIDL service allowing for tampering of system secure settings in Bluebird kiosk application
- CVE-2024-13917 — Intent Injection in Kruger&Matz AppLock application
- CVE-2023-41960 — The vulnerability allows an unprivileged(untrusted) third-party application to interact with a content-provider unsafely
- CVE-2021-25388 — Improper caller check vulnerability in Knox Core prior to SMR MAY-2021 Release 1 allows attackers to install arbitrary a
- CVE-2026-81301 — Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access
- CVE-2026-18994 — A potential improper authorization vulnerability was reported in the Lenovo File Manager Android Application, distribute
- CVE-2024-13916 — Exposure of Applications' Encryption PINs in Kruger&Matz AppLock
- CVE-2024-13915 — Unrestricted Access to Exported Service in com.pri.factorytest