8.8

CVSS3.1

CVE-2024-43771 -

In gatts_process_read_req of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: April 22, 2025, 2:33 p.m.

8.8

CVSS3.1

CVE-2024-43770 -

In gatts_process_find_info of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: April 22, 2025, 2:33 p.m.

7.8

CVSS3.1

CVE-2024-43765 -

In multiple locations, there is a possible way to obtain access to a folder due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:08 p.m.

6.5

CVSS3.1

CVE-2024-43763 -

In build_read_multi_rsp of gatt_sr.cc, there is a possible denial of service due to a logic error in the code. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: April 22, 2025, 2:33 p.m.

8.8

CVSS3.1

CVE-2024-43096 -

In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: April 22, 2025, 2:33 p.m.

7.8

CVSS3.1

CVE-2024-43095 -

In multiple locations, there is a possible way to obtain any system permission due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

7.8

CVSS3.1

CVE-2024-34730 -

In multiple locations, there is a possible bypass of user consent to enabling new Bluetooth HIDs due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 7:09 p.m.

7.8

CVSS3.1

CVE-2023-40132 -

In setActualDefaultRingtoneUri of RingtoneManager.java, there is a possible way to bypass content providers read permissions due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitatio…

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: April 22, 2025, 2:32 p.m.

5.5

CVSS3.1

CVE-2023-40108 -

In multiple locations, there is a possible way to access media content belonging to another user due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Jan. 21, 2025, 11:04 p.m. πŸ”„ Last Modified: April 22, 2025, 2:32 p.m.

8.6

CVSS3.1

CVE-2023-50733 - A Server-Side Request Forgery (SSRF) vulnerability exists in newer Lexmark devices.

A Server-Side Request Forgery (SSRF) vulnerability has been identified in the Web Services feature of newer Lexmark devices.

πŸ“… Published: Jan. 21, 2025, 10:03 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 7014 of 34,919
Β« previous page Β» next page
Filters