3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-21457
Samsung Mobile Devices General
4.1
MEDIUM
EPSS
0.1%
2023 CWE-284 1 PoC

Improper access control vulnerability in Bluetooth prior to SMR Mar-2023 Release 1 allows attackers to send file via Bluetooth without related permission.

CVE-2023-4126
answerdev/answer General
4.1
MEDIUM
EPSS
0.1%
2023 CWE-613 1 PoC

Insufficient Session Expiration in GitHub repository answerdev/answer prior to v1.1.0.

CVE-2023-30716
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.1%
2023 1 PoC

Improper access control vulnerability in SVCAgent prior to SMR Sep-2023 Release 1 allows attackers to trigger certain commands.

CVE-2023-42541
Samsung Push Service General
4.0
MEDIUM
EPSS
0.3%
2023 1 PoC

Improper authorization in PushClientProvider of Samsung Push Service prior to version 3.4.10 allows attacker to access unique id.

CVE-2023-30711
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.1%
2023 1 PoC

Improper authentication in Phone and Messaging Storage SMR SEP-2023 Release 1 allows attacker to insert arbitrary data to the provider.

CVE-2023-45864
Software Genérico General
4.0
MEDIUM
EPSS
0.0%
2023 1 PoC

A race condition issue discovered in Samsung Mobile Processor Exynos 9820, 980, 1080, 2100, 2200, 1280, and 1380 allows unintended modifications of values within certain areas.

CVE-2023-21505
Samsung Core Service General
4.0
MEDIUM
EPSS
0.3%
2023 CWE-285 1 PoC

Improper access control in Samsung Core Service prior to version 2.1.00.36 allows attacker to write arbitrary file in sandbox.

CVE-2023-0780
cockpit-hq/cockpit General
4.0
MEDIUM
EPSS
0.2%
2023 CWE-1021 1 PoC

Improper Restriction of Rendered UI Layers or Frames in GitHub repository cockpit-hq/cockpit prior to 2.3.9-dev.

CVE-2023-5344
vim/vim General
4.0
MEDIUM
EPSS
0.1%
2023 CWE-122 1 PoC

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1969.

CVE-2023-21495
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.1%
2023 CWE-284 1 PoC

Improper access control vulnerability in Knox Enrollment Service prior to SMR May-2023 Release 1 allow attacker install KSP app when device admin is set.

CVE-2023-23003
Software Genérico General
4.0
MEDIUM
EPSS
0.1%
2023 1 PoC

In the Linux kernel before 5.16, tools/perf/util/expr.c lacks a check for the hashmap__new return value.

CVE-2023-21449
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.1%
2023 CWE-200 1 PoC

Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to access sensitive information without proper permission.

CVE-2023-21428
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.1%
2023 CWE-20 1 PoC

Improper input validation vulnerability in TelephonyUI prior to SMR Jan-2023 Release 1 allows attackers to configure Preferred Call. The patch removes unused code.

CVE-2023-21470
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.0%
2023 1 PoC

Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.NETWORK_LOCATION action.

CVE-2023-21464
Samsung Calendar General
4.0
MEDIUM
EPSS
0.1%
2023 CWE-281 1 PoC

Improper access control in Samsung Calendar prior to versions 12.4.02.9000 in Android 13 and 12.3.08.2000 in Android 12 allows local attacker to configure improper status.

CVE-2023-5520
gpac/gpac General
4.0
MEDIUM
EPSS
0.0%
2023 CWE-125 1 PoC

Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.

CVE-2023-5998
gpac/gpac General
4.0
MEDIUM
EPSS
0.1%
2023 CWE-125 1 PoC

Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV.

CVE-2023-4720
gpac/gpac General
4.0
MEDIUM
EPSS
0.0%
2023 CWE-1077 1 PoC

Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV.

CVE-2023-21469
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.0%
2023 1 PoC

Improper access control vulnerability in SLocation prior to SMR Apr-2022 Release 1 allows local attackers to get device location information using com.samsung.android.wifi.GEOFENCE action.

CVE-2023-30717
Samsung Mobile Devices General
4.0
MEDIUM
EPSS
0.1%
2023 1 PoC

Sensitive information exposure vulnerability in SVCAgent prior to SMR Sep-2023 Release 1 allows attackers to get unresettable identifiers.