Show filters
55 Total Results
Displaying 1-10 of 55
Sort by:
Attacker Value
Unknown

CVE-2024-13186

Disclosure Date: January 08, 2025 (last updated January 09, 2025)
The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage.
0
Attacker Value
Unknown

CVE-2024-13185

Disclosure Date: January 08, 2025 (last updated January 09, 2025)
The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage.
0
Attacker Value
Unknown

CVE-2024-13173

Disclosure Date: January 08, 2025 (last updated January 09, 2025)
The health module has insufficient restrictions on loading URLs, which may lead to some information leakage.
0
Attacker Value
Unknown

CVE-2021-26281

Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Some parameters of the alarm clock module are improperly stored, leaking some sensitive information.
0
Attacker Value
Unknown

CVE-2021-26280

Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Locally installed application can bypass the permission check and perform system operations that require permission.
0
Attacker Value
Unknown

CVE-2021-26279

Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Some parameters of the weather module are improperly stored, leaking some sensitive information.
0
Attacker Value
Unknown

CVE-2021-26278

Disclosure Date: December 17, 2024 (last updated December 18, 2024)
The wifi module exposes the interface and has improper permission control, leaking sensitive information about the device.
0
Attacker Value
Unknown

CVE-2020-12487

Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Due to the flaws in the verification of input parameters, the attacker can input carefully constructed commands to make the ABE service execute some commands with root privilege.
0
Attacker Value
Unknown

CVE-2020-12484

Disclosure Date: December 17, 2024 (last updated December 18, 2024)
When using special mode to connect to enterprise wifi, certain options are not properly configured and attackers can pretend to be enterprise wifi through a carefully constructed wifi with the same name, which can lead to man-in-the-middle attacks.
0
Attacker Value
Unknown

CVE-2024-46939

Disclosure Date: November 28, 2024 (last updated December 21, 2024)
The game extension engine of versions 1.2.7.0 and earlier exposes some components, and attackers can construct parameters to perform path traversal attacks, which can overwrite local specific files
0