Show filters
2,035 Total Results
Displaying 1-10 of 2,035
Sort by:
Attacker Value
Unknown

CVE-2023-20963

Disclosure Date: March 24, 2023 (last updated October 08, 2023)
In WorkSource, there is a possible parcel mismatch. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12 Android-12L Android-13Android ID: A-220302519
Attacker Value
Unknown

CVE-2012-6636

Disclosure Date: March 03, 2014 (last updated October 05, 2023)
The Android API before 17 does not properly restrict the WebView.addJavascriptInterface method, which allows remote attackers to execute arbitrary methods of Java objects by using the Java Reflection API within crafted JavaScript code that is loaded into the WebView component in an application targeted to API level 16 or earlier, a related issue to CVE-2013-4710.
1
Attacker Value
Unknown

CVE-2025-20907

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Improper privilege management in Samsung Find prior to SMR Feb-2025 Release 1 allows local privileged attackers to disable Samsung Find.
Attacker Value
Unknown

CVE-2025-20905

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Out-of-bounds read and write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to read and write out-of-bounds memory.
Attacker Value
Unknown

CVE-2025-20904

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Out-of-bounds write in mPOS TUI trustlet prior to SMR Feb-2025 Release 1 allows local privileged attackers to cause memory corruption.
Attacker Value
Unknown

CVE-2025-20891

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Out-of-bounds read in decoding malformed bitstream of video thumbnails in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2025-20890

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Out-of-bounds write in decoding frame buffer in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2025-20889

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Out-of-bounds read in decoding malformed bitstream for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2025-20888

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Out-of-bounds write in handling the block size for smp4vtd in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to execute arbitrary code with privilege. User interaction is required for triggering this vulnerability.
Attacker Value
Unknown

CVE-2025-20887

Disclosure Date: February 04, 2025 (last updated February 13, 2025)
Out-of-bounds read in accessing table used for svp8t in libsthmbc.so prior to SMR Jan-2025 Release 1 allows local attackers to read arbitrary memory. User interaction is required for triggering this vulnerability.