Show filters
1,625 Total Results
Displaying 581-590 of 1,625
Sort by:
Attacker Value
Unknown

CVE-2022-20056

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06160820.
Attacker Value
Unknown

CVE-2022-20055

Disclosure Date: March 10, 2022 (last updated October 07, 2023)
In preloader (usb), there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege, for an attacker who has physical access to the device, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06160806; Issue ID: ALPS06160830.
Attacker Value
Unknown

CVE-2021-41181

Disclosure Date: March 08, 2022 (last updated October 07, 2023)
Nextcloud talk is a self hosting messaging service. In versions prior to 12.3.0 the Nextcloud Android Talk application did not properly detect the lockscreen state when a call was incoming. If an attacker got physical access to the locked phone, and the victim received a phone call the attacker could gain access to the chat messages and files of the user. It is recommended that the Nextcloud Android Talk App is upgraded to 12.3.0. There are no known workarounds.
Attacker Value
Unknown

CVE-2022-23849

Disclosure Date: March 03, 2022 (last updated October 07, 2023)
The biometric lock in Devolutions Password Hub for iOS before 2021.3.4 allows attackers to access the application because of authentication bypass. An attacker must rapidly make failed biometric authentication attempts.
Attacker Value
Unknown

CVE-2021-20315

Disclosure Date: February 18, 2022 (last updated October 07, 2023)
A locking protection bypass flaw was found in some versions of gnome-shell as shipped within CentOS Stream 8, when the "Application menu" or "Window list" GNOME extensions are enabled. This flaw allows a physical attacker who has access to a locked system to kill existing applications and start new ones as the locked user, even if the session is still locked.
Attacker Value
Unknown

CVE-2022-25258

Disclosure Date: February 16, 2022 (last updated November 08, 2023)
An issue was discovered in drivers/usb/gadget/composite.c in the Linux kernel before 5.16.10. The USB Gadget subsystem lacks certain validation of interface OS descriptor requests (ones with a large array index and ones associated with NULL function pointer retrieval). Memory corruption might occur.
Attacker Value
Unknown

CVE-2019-4351

Disclosure Date: February 15, 2022 (last updated October 07, 2023)
IBM Maximo Anywhere 7.6.4.0 applications could disclose sensitive information to a user with physical access to the device. IBM X-Force ID: 161493.
Attacker Value
Unknown

CVE-2019-4352

Disclosure Date: February 15, 2022 (last updated October 07, 2023)
IBM Maximo Anywhere 7.6.4.0 applications could allow obfuscation of the application source code. IBM X-Force ID: 161494.
Attacker Value
Unknown

CVE-2022-24001

Disclosure Date: February 11, 2022 (last updated October 07, 2023)
Information disclosure vulnerability in Edge Panel prior to Android S(12) allows physical attackers to access screenshot in clipboard via Edge Panel.
Attacker Value
Unknown

CVE-2021-44850

Disclosure Date: February 10, 2022 (last updated October 07, 2023)
On Xilinx Zynq-7000 SoC devices, physical modification of an SD boot image allows for a buffer overflow attack in the ROM. Because the Zynq-7000's boot image header is unencrypted and unauthenticated before use, an attacker can modify the boot header stored on an SD card so that a secure image appears to be unencrypted, and they will be able to modify the full range of register initialization values. Normally, these registers will be restricted when booting securely. Of importance to this attack are two registers that control the SD card's transfer type and transfer size. These registers could be modified a way that causes a buffer overflow in the ROM.