CVE-2025-48582General(google / android)

LOWCVSS 8.4 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

In multiple locations, there is a possible way to delete media without the MANAGE_EXTERNAL_STORAGE permission due to an intent redirect. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-59

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • android

Threat summary

  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • General: 3 classified signals
  • Disclosure: 1 classified signal
  • Peaked 3d ago at 1 mentions (2026-03-03); latest day: 1
  • 4 total mentions across 4 days

Affected systems

Vendors
Products
android

3 versions affected across 1 product

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-03-03: 1Mentions · 2026-03-05: 1Mentions · 2026-03-06: 1Mentions · 2026-03-30: 1Technical Details · 2026-03-03: 1Technical Details · 2026-03-05: 1Technical Details · 2026-03-06: 103-0303-0503-0603-30
Signal classification2 categories
General
375.0%
Disclosure
125.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-03-031
Disclosure1
2026-03-051
General1
2026-03-061
General1
2026-03-301
General1
Full discourse4 posts
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2025-48582 - High In multiple locations, there is a possible way to delete media without the MANAGE_EXTERNAL_STORAGE permission due to an intent redirect. This could lead to local escalation of privilege with ... https://www.thehackerwire.com/vulnerability/CVE-2025-48582/ https://t.co/qzjibbkSqL

    Post summary

    The post announces CVE-2025-48582, detailing a local privilege escalation via intent redirect that allows media deletion without permission, but it does not provide a PoC, exploit code, or patch information.

    1000090
    121 followersView on X
  • David@DavidMarquet19
    General

    📌 Top CVEs recientes (CVSS>=7.0): 1. ⚠️ CVE-2025-48605 (CVSS: 8.4) 2. ⚠️ CVE-2025-48602 (CVSS: 8.4) 3. ⚠️ CVE-2025-48582 (CVSS: 8.4) 4. 💉 CVE-2026-3180 (CVSS: 7.5) 5. 🔥 CVE-2026-3132 (CVSS: 8.8) #CyberSecurity #CVE #Infosec

    Post summary

    The text provides a straightforward list of recent CVEs along with their CVSS scores, without additional technical details, exploitation evidence, or mitigation advice.

    00000183
    162 followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2025-48582 (CVSS:8.4, HIGH) is Modified. In multiple locations, there is a possible way to delete media without the MANAGE_EXTERNAL_STORAGE permission due to an ..https://nvd.nist.gov/vuln/detail/CVE-2025-48582 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet notes that CVE-2025-48582 has been modified and highlights a potential media deletion flaw that bypasses MANAGE_EXTERNAL_STORAGE permission, referencing the NVD entry.

    0000054
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    General

    CVE-2025-48582 (CVSS:8.4, HIGH) is Analyzed. In multiple locations, there is a possible way to delete media without the MANAGE_EXTERNAL_STORAGE permission due to an ..https://nvd.nist.gov/vuln/detail/CVE-2025-48582 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The tweet references CVE-2025-48582, points out a potential media deletion flaw involving the MANAGE_EXTERNAL_STORAGE permission, and links to the NVD entry, but it provides no evidence of PoC, exploit code, active exploitation, or remediation.

    0000041
    173 followersView on X
CPE platform detail6 entries

6 of 6 entries

PartVendorProductVersionTarget SWTarget HW
OSgoogleandroid14.0--
OSgoogleandroid15.0--
OSgoogleandroid16.0--
OSgoogleandroid16.0--
OSgoogleandroid16.0--
OSgoogleandroid16.0--

Explore more