Show filters
1,864 Total Results
Displaying 1-10 of 1,864
Sort by:
Attacker Value
Very High
CVE-2020-8899 Samsung Quarm RCE via MMS
Disclosure Date: May 06, 2020 (last updated May 24, 2024)
There is a buffer overwrite vulnerability in the Quram qmg library of Samsung's Android OS versions O(8.x), P(9.0) and Q(10.0). An unauthenticated, unauthorized attacker sending a specially crafted MMS to a vulnerable phone can trigger a heap-based buffer overflow in the Quram image codec leading to an arbitrary remote code execution (RCE) without any user interaction. The Samsung ID is SVE-2020-16747.
3
Attacker Value
Unknown
CVE-2020-0022
Disclosure Date: February 13, 2020 (last updated February 21, 2025)
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715
2
Attacker Value
Unknown
CVE-2012-6636
Disclosure Date: March 03, 2014 (last updated October 05, 2023)
The Android API before 17 does not properly restrict the WebView.addJavascriptInterface method, which allows remote attackers to execute arbitrary methods of Java objects by using the Java Reflection API within crafted JavaScript code that is loaded into the WebView component in an application targeted to API level 16 or earlier, a related issue to CVE-2013-4710.
1
Attacker Value
Unknown
CVE-2023-45866
Disclosure Date: December 08, 2023 (last updated December 21, 2024)
Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.
0
Attacker Value
Unknown
CVE-2023-42695
Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
0
Attacker Value
Unknown
CVE-2023-42694
Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
0
Attacker Value
Unknown
CVE-2023-42693
Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
0
Attacker Value
Unknown
CVE-2023-42692
Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
0
Attacker Value
Unknown
CVE-2023-42690
Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
0
Attacker Value
Unknown
CVE-2023-42689
Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
0