Show filters
1,076 Total Results
Displaying 171-180 of 1,076
Sort by:
Attacker Value
Unknown

CVE-2022-22059

Disclosure Date: September 02, 2022 (last updated February 24, 2025)
Memory corruption due to out of bound read while parsing a video file in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
Attacker Value
Unknown

CVE-2021-35135

Disclosure Date: September 02, 2022 (last updated February 24, 2025)
A null pointer dereference may potentially occur during RSA key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Attacker Value
Unknown

CVE-2022-31887

Disclosure Date: June 28, 2022 (last updated February 24, 2025)
Marval MSM v14.19.0.12476 has a 0-Click Account Takeover vulnerability which allows an attacker to change any user's password in the organization, this means that the user can also escalate achieve Privilege Escalation by changing the administrator password.
Attacker Value
Unknown

CVE-2022-31884

Disclosure Date: June 28, 2022 (last updated February 24, 2025)
Marval MSM v14.19.0.12476 has an Improper Access Control vulnerability which allows a low privilege user to delete other users API Keys including high privilege and the Administrator users API Keys.
Attacker Value
Unknown

CVE-2022-31886

Disclosure Date: June 28, 2022 (last updated February 24, 2025)
Marval MSM v14.19.0.12476 is vulnerable to Cross Site Request Forgery (CSRF). An attacker can disable the 2FA by sending the user a malicious form.
Attacker Value
Unknown

CVE-2022-31885

Disclosure Date: June 28, 2022 (last updated February 24, 2025)
Marval MSM v14.19.0.12476 is vulnerable to OS Command Injection due to the insecure handling of VBScripts.
Attacker Value
Unknown

CVE-2022-31883

Disclosure Date: June 28, 2022 (last updated February 24, 2025)
Marval MSM v14.19.0.12476 is has an Insecure Direct Object Reference (IDOR) vulnerability. A low privilege user is able to see other users API Keys including the Admins API Keys.
Attacker Value
Unknown

CVE-2022-22087

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
memory corruption in video due to buffer overflow while parsing mkv clip with no codechecker in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Attacker Value
Unknown

CVE-2022-22086

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
Memory corruption in video due to double free while parsing 3gp clip with invalid meta data atoms in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Attacker Value
Unknown

CVE-2022-22085

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
Memory corruption in video due to buffer overflow while reading the dts file in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables