Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 42 43 44 45 46 47 48 49 50 51 [52] 53 54 55 56 57 58 59 60 61 62 ... Result(s) : 8822

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
3.3 2022-12-22 CVE-2022-41977 cve An out of bounds read vulnerability exists in the way OpenImageIO version v2.3.19.0 processes string fields in TIFF image files. A specially-crafted TIFF file can lead to inform...
3.3 2022-12-16 CVE-2022-20519 cve In onCreate of AddAppNetworksActivity.java, there is a possible way for a guest user to configure WiFi networks due to a missing permission check. This could lead to local escal...
3.3 2022-12-16 CVE-2022-20525 cve In enforceVisualVoicemailPackage of PhoneInterfaceManager.java, there is a possible leak of visual voicemail package name due to a permissions bypass. This could lead to local e...
3.3 2022-12-16 CVE-2022-20526 cve In CanvasContext::draw of CanvasContext.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no addi...
3.3 2022-12-16 CVE-2022-20528 cve In findParam of HevcUtils.cpp there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with no additional execution...
2.4 2022-12-16 CVE-2022-20529 cve In multiple locations of WifiDialogActivity.java, there is a possible limited lockscreen bypass due to a logic error in the code. This could lead to local escalation of privileg...
3.3 2022-12-16 CVE-2022-20533 cve In getSlice of WifiSlice.java, there is a possible way to connect a new WiFi network from the guest mode due to a missing permission check. This could lead to local escalation o...
3.3 2022-12-16 CVE-2022-20535 cve In registerLocalOnlyHotspotSoftApCallback of WifiManager.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel i...
3.3 2022-12-16 CVE-2022-20536 cve In registerBroadcastReceiver of RcsService.java, there is a possible way to change preferred TTY mode due to a missing permission check. This could lead to local escalation of p...
3.3 2022-12-16 CVE-2022-20537 cve In createDialog of WifiScanModeActivity.java, there is a possible way for a Guest user to enable location-sensitive settings due to a missing permission check. This could lead t...
2.3 2022-12-16 CVE-2022-20543 cve In multiple locations, there is a possible display crash loop due to improper input validation. This could lead to local denial of service with system execution privileges neede...
3.3 2022-12-16 CVE-2022-20556 cve In launchConfigNewNetworkFragment of NetworkProviderSettings.java, there is a possible way for the guest user to add a new WiFi network due to a missing permission check. This c...
3.3 2022-12-16 CVE-2022-20558 cve In registerReceivers of DeviceCapabilityListener.java, there is a possible way to change preferred TTY mode due to a permissions bypass. This could lead to local escalation of p...
3.3 2022-12-16 CVE-2022-20559 cve In revokeOwnPermissionsOnKill of PermissionManager.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel informa...
3.3 2022-12-16 CVE-2022-20562 cve In various functions of ap_input_processor.c, there is a possible way to record audio during a phone call due to a logic error in the code. This could lead to local information ...
2.7 2022-12-16 CVE-2022-41962 cve BigBlueButton is an open source web conferencing system. Versions prior to 2.4-rc-6, and 2.5-alpha-1 contain Incorrect Authorization for setting emoji status. A user with modera...
3.1 2022-12-16 CVE-2022-41963 cve BigBlueButton is an open source web conferencing system. Versions prior to 2.4.3 contain a whiteboard grace period that exists to handle delayed messages, but this grace period ...
2.3 2022-12-13 CVE-2022-20240 cve In sOpAllowSystemRestrictionBypass of AppOpsManager.java, there is a possible leak of location information due to a missing permission check. This could lead to local escalation...
3.3 2022-12-13 CVE-2022-31699 cve VMware ESXi contains a heap-overflow vulnerability. A malicious local actor with restricted privileges within a sandbox process may exploit this issue to achieve a partial infor...
3.5 2022-12-12 CVE-2022-45228 cve Dragino Lora LG01 18ed40 IoT v4.3.4 was discovered to contain a Cross-Site Request Forgery in the logout page.
Page(s) : 1 ... 42 43 44 45 46 47 48 49 50 51 [52] 53 54 55 56 57 58 59 60 61 62 ... Result(s) : 8822