Show filters
1,625 Total Results
Displaying 571-580 of 1,625
Sort by:
Attacker Value
Unknown

CVE-2022-22647

Disclosure Date: March 18, 2022 (last updated November 29, 2024)
This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. A person with access to a Mac may be able to bypass Login Window.
Attacker Value
Unknown

CVE-2021-33150

Disclosure Date: March 11, 2022 (last updated October 07, 2023)
Hardware allows activation of test or debug logic at runtime for some Intel(R) Trace Hub instances which may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Attacker Value
Unknown

CVE-2022-21819

Disclosure Date: March 11, 2022 (last updated October 07, 2023)
NVIDIA distributions of Jetson Linux contain a vulnerability where an error in the IOMMU configuration may allow an unprivileged attacker with physical access to the board direct read/write access to the entire system address space through the PCI bus. Such an attack could result in denial of service, code execution, escalation of privileges, and impact to data integrity and confidentiality. The scope impact may extend to other components.
Attacker Value
Unknown

CVE-2022-25820

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
A vulnerable design in fingerprint matching algorithm prior to SMR Mar-2022 Release 1 allows physical attackers to perform brute force attack on screen lock password.
Attacker Value
Unknown

CVE-2022-25816

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
Improper authentication in Samsung Lock and mask apps setting prior to SMR Mar-2022 Release 1 allows attacker to change enable/disable without authentication
Attacker Value
Unknown

CVE-2022-25213

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
Improper physical access control and use of hard-coded credentials in /etc/passwd permits an attacker with physical access to obtain a root shell via an unprotected UART port on the device. The same port exposes an unauthenticated Das U-Boot BIOS shell.
Attacker Value
Unknown

CVE-2022-24932

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
Improper Protection of Alternate Path vulnerability in Setup wizard process prior to SMR Mar-2022 Release 1 allows physical attacker package installation before finishing Setup wizard.
Attacker Value
Unknown

CVE-2022-20060

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
In preloader (usb), there is a possible permission bypass due to a missing proper image authentication. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06137462.
Attacker Value
Unknown

CVE-2022-20059

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06160781.
Attacker Value
Unknown

CVE-2022-20058

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06160485.