Show filters
6,927 Total Results
Displaying 111-120 of 6,927
Sort by:
Attacker Value
Unknown

CVE-2025-0681

Disclosure Date: January 30, 2025 (last updated January 31, 2025)
The Cloud MQTT service of the affected products supports wildcard topic subscription which could allow an attacker to obtain sensitive information from tapping the service communications.
0
Attacker Value
Unknown

CVE-2025-0680

Disclosure Date: January 30, 2025 (last updated January 31, 2025)
Affected products contain a vulnerability in the device cloud rpc command handling process that could allow remote attackers to take control over arbitrary devices connected to the cloud.
0
Attacker Value
Unknown

CVE-2025-0834

Disclosure Date: January 30, 2025 (last updated January 30, 2025)
Privilege escalation vulnerability has been found in Wondershare Dr.Fone version 13.5.21. This vulnerability could allow an attacker to escalate privileges by replacing the binary ‘C:\ProgramData\Wondershare\wsServices\ElevationService.exe’ with a malicious binary. This binary will be executed by SYSTEM automatically.
0
Attacker Value
Unknown

CVE-2025-24177

Disclosure Date: January 27, 2025 (last updated January 31, 2025)
A null pointer dereference was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.3, iOS 18.3 and iPadOS 18.3. A remote attacker may be able to cause a denial-of-service.
Attacker Value
Unknown

CVE-2025-24161

Disclosure Date: January 27, 2025 (last updated January 31, 2025)
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.4, macOS Sonoma 14.7.3, visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. Parsing a file may lead to an unexpected app termination.
Attacker Value
Unknown

CVE-2025-24150

Disclosure Date: January 27, 2025 (last updated January 31, 2025)
A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sequoia 15.3, Safari 18.3, iOS 18.3 and iPadOS 18.3. Copying a URL from Web Inspector may lead to command injection.
Attacker Value
Unknown

CVE-2025-24145

Disclosure Date: January 27, 2025 (last updated January 31, 2025)
A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15.3, iOS 18.3 and iPadOS 18.3. An app may be able to view a contact's phone number in system logs.
Attacker Value
Unknown

CVE-2025-24141

Disclosure Date: January 27, 2025 (last updated January 31, 2025)
An authentication issue was addressed with improved state management. This issue is fixed in iOS 18.3 and iPadOS 18.3. An attacker with physical access to an unlocked device may be able to access Photos while the app is locked.
Attacker Value
Unknown

CVE-2025-24131

Disclosure Date: January 27, 2025 (last updated January 31, 2025)
The issue was addressed with improved memory handling. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. An attacker in a privileged position may be able to perform a denial-of-service.
Attacker Value
Unknown

CVE-2025-24129

Disclosure Date: January 27, 2025 (last updated February 01, 2025)
A type confusion issue was addressed with improved checks. This issue is fixed in visionOS 2.3, iOS 18.3 and iPadOS 18.3, macOS Sequoia 15.3, watchOS 11.3, tvOS 18.3. A remote attacker may cause an unexpected app termination.