Total
5309 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2023-33917 | 2 Google, Unisoc | 9 Android, Sc7731e, Sc9832e and 6 more | 2024-11-21 | 5.5 Medium |
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33916 | 2 Google, Unisoc | 9 Android, Sc7731e, Sc9832e and 6 more | 2024-11-21 | 5.5 Medium |
In vowifiservice, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33915 | 2 Google, Unisoc | 5 Android, S8000, T760 and 2 more | 2024-11-21 | 7.5 High |
In LTE protocol stack, there is a possible missing permission check. This could lead to remote information disclosure no additional execution privileges needed | ||||
CVE-2023-33912 | 2 Google, Unisoc | 14 Android, S8000, Sc7731e and 11 more | 2024-11-21 | 5.5 Medium |
In Contacts service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33911 | 2 Google, Unisoc | 9 Android, Sc7731e, Sc9832e and 6 more | 2024-11-21 | 5.5 Medium |
In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33910 | 2 Google, Unisoc | 14 Android, S8000, Sc7731e and 11 more | 2024-11-21 | 5.5 Medium |
In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33909 | 2 Google, Unisoc | 14 Android, S8000, Sc7731e and 11 more | 2024-11-21 | 5.5 Medium |
In Contacts service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33908 | 2 Google, Unisoc | 13 Android, S8000, Sc9832e and 10 more | 2024-11-21 | 5.5 Medium |
In ims service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33907 | 2 Google, Unisoc | 14 Android, S8000, Sc7731e and 11 more | 2024-11-21 | 5.5 Medium |
In Contacts Service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33906 | 2 Google, Unisoc | 14 Android, S8000, Sc7731e and 11 more | 2024-11-21 | 5.5 Medium |
In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges | ||||
CVE-2023-33902 | 2 Google, Unisoc | 14 Android, S8000, Sc7731e and 11 more | 2024-11-21 | 5.5 Medium |
In bluetooth service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. | ||||
CVE-2023-33901 | 2 Google, Unisoc | 14 Android, S8000, Sc7731e and 11 more | 2024-11-21 | 5.5 Medium |
In bluetooth service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. | ||||
CVE-2023-32855 | 5 Google, Linuxfoundation, Mediatek and 2 more | 36 Android, Yocto, Mt2735 and 33 more | 2024-11-21 | 6.7 Medium |
In aee, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07909204; Issue ID: ALPS07909204. | ||||
CVE-2023-32127 | 2024-11-21 | 5.3 Medium | ||
Missing Authorization vulnerability in Daniel Powney Multi Rating allows Functionality Misuse.This issue affects Multi Rating: from n/a through 5.0.6. | ||||
CVE-2023-31080 | 1 Unlimited-elements | 1 Unlimited Elements For Elementor | 2024-11-21 | 8.3 High |
Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates).This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through 1.5.65. | ||||
CVE-2023-30969 | 1 Palantir | 1 Tiles | 2024-11-21 | 8.2 High |
The Palantir Tiles1 service was found to be vulnerable to an API wide issue where the service was not performing authentication/authorization on all the endpoints. | ||||
CVE-2023-30950 | 1 Palantir | 1 Foundry Campaigns | 2024-11-21 | 6.5 Medium |
The foundry campaigns service was found to be vulnerable to an unauthenticated information disclosure in a rest endpoint | ||||
CVE-2023-30480 | 1 Wordpress | 1 Wordpress | 2024-11-21 | 4.3 Medium |
Missing Authorization vulnerability in Sparkle WP Educenter.This issue affects Educenter: from n/a through 1.5.5. | ||||
CVE-2023-30195 | 1 Lineagrafica | 1 Lgdetailedorder | 2024-11-21 | 7.5 High |
In the module "Detailed Order" (lgdetailedorder) in version up to 1.1.20 from Linea Grafica for PrestaShop, a guest can download personal informations without restriction formatted in json. | ||||
CVE-2023-2562 | 1 Gallery-metabox Project | 1 Gallery-metabox | 2024-11-21 | 4.3 Medium |
The Gallery Metabox for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the refresh_metabox function in versions up to, and including, 1.5. This makes it possible for subscriber-level attackers to obtain a list of images attached to a post. |