Search Results (359894 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-22272 1 Google 1 Android 2024-11-21 4 Medium
Improper authorization in TelephonyManager prior to SMR Jan-2022 Release 1 allows attackers to get IMSI without READ_PRIVILEGED_PHONE_STATE permission
CVE-2022-22271 1 Google 1 Android 2024-11-21 5.5 Medium
A missing input validation before memory copy in TIMA trustlet prior to SMR Jan-2022 Release 1 allows attackers to copy data from arbitrary memory.
CVE-2022-22270 1 Google 1 Android 2024-11-21 4.4 Medium
An implicit Intent hijacking vulnerability in Dialer prior to SMR Jan-2022 Release 1 allows unprivileged applications to access contact information.
CVE-2022-22269 1 Google 1 Android 2024-11-21 4 Medium
Keeping sensitive data in unprotected BluetoothSettingsProvider prior to SMR Jan-2022 Release 1 allows untrusted applications to get a local Bluetooth MAC address.
CVE-2022-22268 1 Google 1 Android 2024-11-21 6.1 Medium
Incorrect implementation of Knox Guard prior to SMR Jan-2022 Release 1 allows physically proximate attackers to temporary unlock the Knox Guard via Samsung DeX mode.
CVE-2022-22267 1 Google 1 Android 2024-11-21 4 Medium
Implicit Intent hijacking vulnerability in ActivityMetricsLogger prior to SMR Jan-2022 Release 1 allows attackers to get running application information.
CVE-2022-22266 1 Google 1 Android 2024-11-21 4 Medium
(Applicable to China models only) Unprotected WifiEvaluationService in TencentWifiSecurity application prior to SMR Jan-2022 Release 1 allows untrusted applications to get WiFi information without proper permission.
CVE-2022-22264 1 Google 1 Android 2024-11-21 7.7 High
Improper sanitization of incoming intent in Dressroom prior to SMR Jan-2022 Release 1 allows local attackers to read and write arbitrary files without permission.
CVE-2022-22263 1 Google 1 Android 2024-11-21 4 Medium
Unprotected dynamic receiver in SecSettings prior to SMR Jan-2022 Release 1 allows untrusted applications to launch arbitrary activity.
CVE-2022-22262 1 Asus 1 Rog Live Service 2024-11-21 7.7 High
ROG Live Service’s function for deleting temp files created by installation has an improper link resolution before file access vulnerability. Since this function does not validate the path before deletion, an unauthenticated local attacker can create an unexpected symbolic link to system file path, to delete arbitrary system files and disrupt system service.
CVE-2022-22261 1 Huawei 2 Emui, Harmonyos 2024-11-21 7.5 High
The HiAIserver has a vulnerability in verifying the validity of the weight used in the model.Successful exploitation of this vulnerability will affect AI services.
CVE-2022-22260 1 Huawei 2 Emui, Harmonyos 2024-11-21 9.1 Critical
The kernel module has a UAF vulnerability.Successful exploitation of this vulnerability will affect data integrity and availability.
CVE-2022-22259 1 Huawei 2 Flmg-10, Flmg-10 Firmware 2024-11-21 6.8 Medium
There is an improper authentication vulnerability in FLMG-10 10.0.1.0(H100SP22C00). Successful exploitation of this vulnerability may lead to a control of the victim device.
CVE-2022-22258 1 Huawei 3 Emui, Harmonyos, Magic Ui 2024-11-21 9.8 Critical
The Wi-Fi module has an event notification vulnerability.Successful exploitation of this vulnerability may allow third-party applications to intercept event notifications and add information and result in elevation-of-privilege.
CVE-2022-22257 1 Huawei 3 Emui, Harmonyos, Magic Ui 2024-11-21 7.5 High
The customization framework has a vulnerability of improper permission control.Successful exploitation of this vulnerability may affect data integrity.
CVE-2022-22256 1 Huawei 3 Emui, Harmonyos, Magic Ui 2024-11-21 7.5 High
The DFX module has an access control vulnerability.Successful exploitation of this vulnerability may affect data confidentiality.
CVE-2022-22255 1 Huawei 2 Emui, Harmonyos 2024-11-21 7.5 High
The application framework has a common DoS vulnerability.Successful exploitation of this vulnerability may affect the availability.
CVE-2022-22254 1 Huawei 3 Emui, Harmonyos, Magic Ui 2024-11-21 7.5 High
A permission bypass vulnerability exists when the NFC CAs access the TEE.Successful exploitation of this vulnerability may affect data confidentiality.
CVE-2022-22253 1 Huawei 3 Emui, Harmonyos, Magic Ui 2024-11-21 7.5 High
The DFX module has a vulnerability of improper validation of integrity check values.Successful exploitation of this vulnerability may affect system stability.
CVE-2022-22252 1 Huawei 3 Emui, Harmonyos, Magic Ui 2024-11-21 7.5 High
The DFX module has a UAF vulnerability.Successful exploitation of this vulnerability may affect system stability.