Show filters
924 Total Results
Displaying 1-10 of 924
Sort by:
Attacker Value
Very High

CVE-2024-55956

Disclosure Date: December 13, 2024 (last updated December 21, 2024)
In Cleo Harmony before 5.8.0.24, VLTrader before 5.8.0.24, and LexiCom before 5.8.0.24, an unauthenticated user can import and execute arbitrary Bash or PowerShell commands on the host system by leveraging the default settings of the Autorun directory.
Attacker Value
Unknown

CVE-2025-0304

Disclosure Date: February 07, 2025 (last updated February 12, 2025)
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through use after free.
Attacker Value
Unknown

CVE-2025-0303

Disclosure Date: February 07, 2025 (last updated February 12, 2025)
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through buffer overflow.
Attacker Value
Unknown

CVE-2025-0302

Disclosure Date: February 07, 2025 (last updated February 12, 2025)
in OpenHarmony v4.1.2 and prior versions allow a local attacker cause DOS through integer overflow.
Attacker Value
Unknown

CVE-2024-57962

Disclosure Date: February 06, 2025 (last updated February 07, 2025)
Vulnerability of incomplete verification information in the VPN service module Impact: Successful exploitation of this vulnerability may affect availability.
0
Attacker Value
Unknown

CVE-2024-57961

Disclosure Date: February 06, 2025 (last updated February 07, 2025)
Out-of-bounds write vulnerability in the emcom module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
0
Attacker Value
Unknown

CVE-2024-57960

Disclosure Date: February 06, 2025 (last updated February 07, 2025)
Input verification vulnerability in the ExternalStorageProvider module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
0
Attacker Value
Unknown

CVE-2024-57959

Disclosure Date: February 06, 2025 (last updated February 07, 2025)
Use-After-Free (UAF) vulnerability in the display module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
0
Attacker Value
Unknown

CVE-2024-57958

Disclosure Date: February 06, 2025 (last updated February 07, 2025)
Out-of-bounds array read vulnerability in the FFRT module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
0
Attacker Value
Unknown

CVE-2024-57957

Disclosure Date: February 06, 2025 (last updated February 07, 2025)
Vulnerability of improper log information control in the UI framework module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
0