CVE-2026-86701: Low severity ManabiPocket for Parents vulnerability
Android application "ManabiPocket for Parents" contains an improper access control vulnerability in one of its components. A malicious application installed on the user's Android device may exploit the affected component via an Intent, potentially allowing the malicious application to obtain sensitive information from the affected application.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
An attacker needs to get a malicious application installed on the same Android device as ManabiPocket for Parents. The issue is exploited locally through an Intent sent to the affected component, and user interaction is required.
What is the likely impact if exploitation succeeds?
A malicious application may obtain sensitive information from ManabiPocket for Parents. The provided severity data indicates confidentiality impact only; no integrity or availability impact is listed.
Does exploiting this require credentials or special privileges?
No privileges are required according to the supplied vector. However, exploitation has high attack complexity and requires local access through a malicious app on the device.