Show filters
357 Total Results
Displaying 211-220 of 357
Sort by:
Attacker Value
Unknown

CVE-2021-44204

Disclosure Date: February 02, 2022 (last updated February 23, 2025)
Local privilege escalation via named pipe due to improper access control checks. The following products are affected: Acronis Cyber Protect 15 (Windows) before build 28035, Acronis Agent (Windows) before build 27147, Acronis Cyber Protect Home Office (Windows) before build 39612, Acronis True Image 2021 (Windows) before build 39287
Attacker Value
Unknown

CVE-2021-28506

Disclosure Date: January 11, 2022 (last updated February 23, 2025)
An issue has recently been discovered in Arista EOS where certain gNOI APIs incorrectly skip authorization and authentication which could potentially allow a factory reset of the device.
Attacker Value
Unknown

CVE-2021-28500

Disclosure Date: January 11, 2022 (last updated February 23, 2025)
An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and TerminAttr agents could result in unrestricted access to the device for local users with nopassword configuration.
Attacker Value
Unknown

CVE-2021-28501

Disclosure Date: January 11, 2022 (last updated February 23, 2025)
An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and TerminAttr agents could result in unrestricted access to the device for local users with nopassword configuration.
Attacker Value
Unknown

CVE-2022-22288

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Improper authorization vulnerability in Galaxy Store prior to 4.5.36.5 allows remote app installation of the allowlist.
Attacker Value
Unknown

CVE-2022-22272

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Improper authorization in TelephonyManager prior to SMR Jan-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission
Attacker Value
Unknown

CVE-2022-22269

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Keeping sensitive data in unprotected BluetoothSettingsProvider prior to SMR Jan-2022 Release 1 allows untrusted applications to get a local Bluetooth MAC address.
Attacker Value
Unknown

CVE-2022-22268

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Incorrect implementation of Knox Guard prior to SMR Jan-2022 Release 1 allows physically proximate attackers to temporary unlock the Knox Guard via Samsung DeX mode.
Attacker Value
Unknown

CVE-2022-22267

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Implicit Intent hijacking vulnerability in ActivityMetricsLogger prior to SMR Jan-2022 Release 1 allows attackers to get running application information.
Attacker Value
Unknown

CVE-2020-9061

Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Z-Wave devices using Silicon Labs 500 and 700 series chipsets, including but not likely limited to the SiLabs UZB-7 version 7.00, ZooZ ZST10 version 6.04, Aeon Labs ZW090-A version 3.95, and Samsung STH-ETH-200 version 6.04, are susceptible to denial of service via malformed routing messages.