Show filters
55 Total Results
Displaying 1-10 of 55
Sort by:
Attacker Value
Unknown
CVE-2024-13186
Disclosure Date: January 08, 2025 (last updated January 09, 2025)
The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage.
0
Attacker Value
Unknown
CVE-2024-13185
Disclosure Date: January 08, 2025 (last updated January 09, 2025)
The MinigameCenter module has insufficient restrictions on loading URLs, which may lead to some information leakage.
0
Attacker Value
Unknown
CVE-2024-13173
Disclosure Date: January 08, 2025 (last updated January 09, 2025)
The health module has insufficient restrictions on loading URLs, which may lead to some information leakage.
0
Attacker Value
Unknown
CVE-2021-26281
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Some parameters of the alarm clock module are improperly stored, leaking some sensitive information.
0
Attacker Value
Unknown
CVE-2021-26280
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Locally installed application can bypass the permission check and perform system operations that require permission.
0
Attacker Value
Unknown
CVE-2021-26279
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Some parameters of the weather module are improperly stored, leaking some sensitive information.
0
Attacker Value
Unknown
CVE-2021-26278
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
The wifi module exposes the interface and has improper permission control, leaking sensitive information about the device.
0
Attacker Value
Unknown
CVE-2020-12487
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Due to the flaws in the verification of input parameters, the attacker can input carefully constructed commands to make the ABE service execute some commands with root privilege.
0
Attacker Value
Unknown
CVE-2020-12484
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
When using special mode to connect to enterprise wifi, certain options are not properly configured and attackers can pretend to be enterprise wifi through a carefully constructed wifi with the same name, which can lead to man-in-the-middle attacks.
0
Attacker Value
Unknown
CVE-2024-46939
Disclosure Date: November 28, 2024 (last updated December 21, 2024)
The game extension engine of versions 1.2.7.0 and earlier exposes some components, and attackers can construct parameters to perform path traversal attacks, which can overwrite local specific files
0