Show filters
64 Total Results
Displaying 1-10 of 64
Sort by:
Attacker Value
Low
CVE-2020-9442
Disclosure Date: February 28, 2020 (last updated February 21, 2025)
OpenVPN Connect 3.1.0.361 on Windows has Insecure Permissions for %PROGRAMDATA%\OpenVPN Connect\drivers\tap\amd64\win10, which allows local users to gain privileges by copying a malicious drvstore.dll there.
0
Attacker Value
Unknown
CVE-2021-0953
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In setOnClickActivityIntent of SearchWidgetProvider.java, there is a possible way to access contacts and history bookmarks without permission due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-184046278
0
Attacker Value
Unknown
CVE-2021-0927
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In requestChannelBrowsable of TvInputManagerService.java, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-8.1 Android-9Android ID: A-189824175
0
Attacker Value
Unknown
CVE-2021-0704
Disclosure Date: December 15, 2021 (last updated February 23, 2025)
In createNoCredentialsPermissionNotification and related functions of AccountManagerService.java, there is a possible way to retrieve accounts from the device without permissions due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-179338675
0
Attacker Value
Unknown
CVE-2021-37044
Disclosure Date: December 08, 2021 (last updated February 23, 2025)
There is a Permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service availability.
0
Attacker Value
Unknown
CVE-2021-37086
Disclosure Date: December 07, 2021 (last updated February 23, 2025)
There is a Improper Preservation of Permissions vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to attackers which can isolate and read synchronization files of other applications across the UID sandbox.
0
Attacker Value
Unknown
CVE-2021-37056
Disclosure Date: December 07, 2021 (last updated February 23, 2025)
There is an Improper permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may allow attempts to obtain certain device information.
0
Attacker Value
Unknown
CVE-2021-37006
Disclosure Date: November 23, 2021 (last updated February 23, 2025)
There is a Improper Preservation of Permissions vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability will cause the confidentiality of users is affected.
0
Attacker Value
Unknown
CVE-2021-39897
Disclosure Date: November 05, 2021 (last updated February 23, 2025)
Improper access control in GitLab CE/EE version 10.5 and above allowed subgroup members with inherited access to a project from a parent group to still have access even after the subgroup is transferred
0
Attacker Value
Unknown
CVE-2021-30827
Disclosure Date: October 19, 2021 (last updated February 23, 2025)
A permissions issue existed. This issue was addressed with improved permission validation. This issue is fixed in Security Update 2021-005 Catalina, macOS Big Sur 11.6. A local attacker may be able to elevate their privileges.
0