Show filters
2,259 Total Results
Displaying 1-10 of 2,259
Sort by:
Attacker Value
Unknown

CVE-2023-20963

Disclosure Date: March 24, 2023 (last updated October 08, 2023)
In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-220302519
Attacker Value
Unknown

CVE-2012-6636

Disclosure Date: March 03, 2014 (last updated October 05, 2023)
The Android API before 17 does not properly restrict the WebView.addJavascriptInterface method, which allows remote attackers to execute arbitrary methods of Java objects by using the Java Reflection API within crafted JavaScript code that is loaded into the WebView component in an application targeted to API level 16 or earlier, a related issue to CVE-2013-4710.
1
Attacker Value
Unknown

CVE-2024-20862

Disclosure Date: May 07, 2024 (last updated February 11, 2025)
Out-of-bounds write in SveService prior to SMR May-2024 Release 1 allows local privileged attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2024-20833

Disclosure Date: March 05, 2024 (last updated February 11, 2025)
Use after free vulnerability in pub_crypto_recv_msg prior to SMR Mar-2024 Release 1 due to race condition allows local attackers with system privilege to cause memory corruption.
Attacker Value
Unknown

CVE-2024-20836

Disclosure Date: March 05, 2024 (last updated February 11, 2025)
Out of bounds Read vulnerability in ssmis_get_frm in libsubextractor.so prior to SMR Mar-2024 Release 1 allows local attackers to read out of bounds memory.
Attacker Value
Unknown

CVE-2024-20835

Disclosure Date: March 05, 2024 (last updated February 11, 2025)
Improper access control vulnerability in CustomFrequencyManagerService prior to SMR Mar-2024 Release 1 allows local attackers to execute privileged behaviors.
Attacker Value
Unknown

CVE-2024-20834

Disclosure Date: March 05, 2024 (last updated February 11, 2025)
The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to access MAC address without proper permission.
Attacker Value
Unknown

CVE-2024-20832

Disclosure Date: March 05, 2024 (last updated February 11, 2025)
Heap overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2024-20831

Disclosure Date: March 05, 2024 (last updated February 11, 2025)
Stack overflow in Little Kernel in bootloader prior to SMR Mar-2024 Release 1 allows local privileged attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2024-20830

Disclosure Date: March 05, 2024 (last updated February 11, 2025)
Incorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock settings.