CVE-2025-68711
Received Received - Intake
Local Privilege Escalation in AppLockZ Android App

Publication date: 2026-05-26

Last updated on: 2026-05-26

Assigner: MITRE

Description
AppLockZ App Lock and Fingerprint Lock (applock.passwordfingerprint.applockz) 4.2.11 for Android allows a local attacker with physical access to bypass the PIN lock. The lock is implemented as an overlay rather than by using Android's secure authentication APIs. By navigating cascading interface flows - insecure navigation through exposed routes facilitates app control evasion {I.N.T.E.R.F.A.C.E] via advertisement or browser intents, an attacker can evade lockscreen verification and access protected apps (e.g., Chrome). This results in information disclosure and privilege escalation.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-05-26
Last Modified
2026-05-26
Generated
2026-05-27
AI Q&A
2026-05-27
EPSS Evaluated
N/A
NVD
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

The vulnerability in AppLockZ App Lock and Fingerprint Lock version 4.2.11 for Android allows a local attacker with physical access to bypass the PIN lock.

This happens because the lock is implemented as an overlay rather than using Android's secure authentication APIs.

An attacker can navigate through cascading interface flows and insecure navigation via advertisement or browser intents to evade lockscreen verification and access protected apps such as Chrome.

This leads to information disclosure and privilege escalation.


How can this vulnerability impact me? :

This vulnerability can allow an attacker with physical access to your device to bypass the app lock PIN.

As a result, the attacker can access protected applications and potentially sensitive information within those apps.

This leads to information disclosure and privilege escalation, compromising the security and privacy of your data.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart