Show filters
1,864 Total Results
Displaying 1-10 of 1,864
Sort by:
Attacker Value
Very High

CVE-2020-8899 Samsung Quarm RCE via MMS

Disclosure Date: May 06, 2020 (last updated May 24, 2024)
There is a buffer overwrite vulnerability in the Quram qmg library of Samsung's Android OS versions O(8.x), P(9.0) and Q(10.0). An unauthenticated, unauthorized attacker sending a specially crafted MMS to a vulnerable phone can trigger a heap-based buffer overflow in the Quram image codec leading to an arbitrary remote code execution (RCE) without any user interaction. The Samsung ID is SVE-2020-16747.
Attacker Value
Unknown

CVE-2020-0022

Disclosure Date: February 13, 2020 (last updated February 21, 2025)
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-143894715
Attacker Value
Unknown

CVE-2012-6636

Disclosure Date: March 03, 2014 (last updated October 05, 2023)
The Android API before 17 does not properly restrict the WebView.addJavascriptInterface method, which allows remote attackers to execute arbitrary methods of Java objects by using the Java Reflection API within crafted JavaScript code that is loaded into the WebView component in an application targeted to API level 16 or earlier, a related issue to CVE-2013-4710.
1
Attacker Value
Unknown

CVE-2023-45866

Disclosure Date: December 08, 2023 (last updated December 21, 2024)
Bluetooth HID Hosts in BlueZ may permit an unauthenticated Peripheral role HID Device to initiate and establish an encrypted connection, and accept HID keyboard reports, potentially permitting injection of HID messages when no user interaction has occurred in the Central role to authorize such access. An example affected package is bluez 5.64-0ubuntu1 in Ubuntu 22.04LTS. NOTE: in some cases, a CVE-2020-0556 mitigation would have already addressed this Bluetooth HID Hosts issue.
Attacker Value
Unknown

CVE-2023-42695

Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
Attacker Value
Unknown

CVE-2023-42694

Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
Attacker Value
Unknown

CVE-2023-42693

Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
Attacker Value
Unknown

CVE-2023-42692

Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
Attacker Value
Unknown

CVE-2023-42690

Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed
Attacker Value
Unknown

CVE-2023-42689

Disclosure Date: December 04, 2023 (last updated December 07, 2023)
In wifi service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed