0.0

CVE-2025-22425 -

In onCreate of InstallStart.java, there is a possible permissions bypass due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

πŸ“… Published: Sept. 4, 2025, 5:11 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 5:11 p.m.

5.1

CVSS3.1

CVE-2025-0087 -

In onCreate of UninstallerActivity.java, there is a possible way to uninstall a different user's app due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Sept. 4, 2025, 5:11 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 6:56 p.m.

4

CVSS3.1

CVE-2025-0077 -

In multiple functions of UserController.java, there is a possible lock screen bypass due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Sept. 4, 2025, 5:11 p.m. πŸ”„ Last Modified: Sept. 6, 2025, 3:55 a.m.

4

CVSS3.1

CVE-2024-49739 -

In MMapVAccess of pmr_os.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Sept. 4, 2025, 5:11 p.m. πŸ”„ Last Modified: Sept. 9, 2025, 3:55 a.m.

0.0

CVE-2023-35657 -

In bta_av_config_ind of bta_av_aact.cc, there is a possible out of bounds read due to type confusion. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

πŸ“… Published: Sept. 4, 2025, 5:11 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 5:11 p.m.

7.9

CVSS3.1

CVE-2025-9636 - Cross-Origin Opener Policy Vulnerability in pgAdmin 4

pgAdmin <= 9.7 is affected by a Cross-Origin Opener Policy (COOP) vulnerability.Β This vulnerability allows an attacker to manipulate the OAuth flow,Β potentially leading to unauthorised account access, account takeover, data breaches, and privilege escalation.

πŸ“… Published: Sept. 4, 2025, 4:43 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 5:15 p.m.

6.3

CVSS3.1

CVE-2025-23262 -

NVIDIA ConnectX contains a vulnerability in the management interface, where an attacker with local access could cause incorrect authorization to modify the configuration. A successful exploit of this vulnerability might lead to denial of service, escalation of privileges, information disclosure, an…

πŸ“… Published: Sept. 4, 2025, 3:52 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:57 p.m.

5.5

CVSS3.1

CVE-2025-23261 -

NVIDIA Cumulus Linux and NVOS products contain a vulnerability, where hashed user passwords are not properly suppressed in log files, potentially disclosing information to unauthorized users.

πŸ“… Published: Sept. 4, 2025, 3:52 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:57 p.m.

6.5

CVSS3.1

CVE-2025-23259 -

NVIDIA Mellanox DPDK contains a vulnerability in Poll Mode Driver (PMD), where an attacker on a VM in the system might be able to cause information disclosure and denial of service on the network interface.

πŸ“… Published: Sept. 4, 2025, 3:52 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:57 p.m.

7.3

CVSS3.1

CVE-2025-23258 -

NVIDIA DOCA contains a vulnerability in the collectx-dpeserver Debian package for arm64 that could allow an attacker with low privileges to escalate privileges. A successful exploit of this vulnerability might lead to escalation of privileges.

πŸ“… Published: Sept. 4, 2025, 3:51 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:57 p.m.
Total resulsts: 309088
Page 89 of 30,909
Β« previous page Β» next page
Filters