| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| In setDefaultKey of DefaultPaymentSettings.java, there is a possible way for an application to set the main user's default NFC payment setting due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. |
| In multiple files, there is a possible way to reveal information across users due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. |
| In VerifyNoOverlapInSessions of apexd.cpp, there is a possible way to block security updates due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. |
| FlexRIC v2.0.0 contains reachable assert(0) calls in stub message handlers for whitelisted but unimplemented E2AP message types in the near-RT RIC. A remote unauthenticated attacker can send a decodable E2AP PDU of such a type (e.g., E2nodeConfigurationUpdate) to crash the near-RT RIC process (port 36421) via SIGABRT. The message passes whitelist validation but triggers an unconditional assertion in the handler. |
| A vulnerability was identified in itsourcecode Fees Management System 1.0. This affects an unknown part of the file /manage_course.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. |
| Memory corruption while using Strongbox due to buffer overflow. |
| Memory corruption while using Strongbox due to missing bounds check. |
| Memory Corruption when accessing shared buffers without validation of concurrent user-mode input modifications. |
| Memory corruption while processing multiple IOCTL command for escape operations. |
| Memory corruption while processing IOCTL calls for escape operations. |
| Memory Corruption when processing fastboot commands to set display mode. |
| Memory corruption while processing fastboot commands with improperly formatted input. |
| Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. |
| Memory corruption while processing fastboot commands with invalid input. |
| Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader. |
| Memory corruption while processing fastboot OEM commands. |
| Memory Corruption when processing display command line information due to improper initialization of a variable. |
| Memory Corruption when sending random number generator command with insufficient output buffer size. |
| Memory Corruption when output buffer size is smaller than input buffer size during data copying operation. |
| Memory corruption in windows drivers while sending incorrect trusted application request |