Latest CVE Feed
-
9.3
HIGHCVE-2016-3928
The MediaTek video driver in Android before 2016-10-05 allows attackers to gain privileges via a crafted application, aka Android internal bug 30019362 and MediaTek internal bug ALPS02829384.... Read more
Affected Products : android- EPSS Score: %0.04
- Published: Oct. 10, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-3939
drivers/video/msm/mdss/mdss_debug.c in the Qualcomm video driver in Android before 2016-10-05 on Nexus 5X, Nexus 6, Nexus 6P, and Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 30874196 and Qual... Read more
Affected Products : android- EPSS Score: %0.04
- Published: Oct. 10, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2019-1772
A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exist because the affected softwa... Read more
Affected Products : webex_meetings_server webex_meetings_online webex_business_suite webex_business_suite_lockdown- EPSS Score: %0.27
- Published: May. 15, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-27277
Delta Electronics DOPSoft Version 4.0.8.21 and prior has a null pointer dereference issue while processing project files, which may allow an attacker to execute arbitrary code.... Read more
- EPSS Score: %0.13
- Published: Jan. 11, 2021
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-2253
Untrusted search path vulnerability in Installer of Yahoo! Toolbar (for Internet explorer) v8.0.0.6 and earlier, with its timestamp prior to June 13, 2017, 18:18:55 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : toolbar- EPSS Score: %0.14
- Published: Jul. 17, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2019-1989
In ih264d_fmt_conv_420sp_to_420p of ih264d_format_conv.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploi... Read more
Affected Products : android- EPSS Score: %1.67
- Published: Jun. 19, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2019-2014
In rw_t3t_handle_get_sc_poll_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitati... Read more
Affected Products : android- EPSS Score: %0.14
- Published: Jun. 19, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2019-2015
In rw_t3t_act_handle_check_rsp of rw_t3t.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation... Read more
Affected Products : android- EPSS Score: %0.14
- Published: Jun. 19, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-2213
Untrusted search path vulnerability in SemiDynaEXE (SemiDynaEXE2008.EXE) ver. 1.0.2 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.... Read more
Affected Products : semidynaexe- EPSS Score: %0.14
- Published: Jun. 09, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2019-2134
In phFriNfc_ExtnsTransceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for ex... Read more
Affected Products : android- EPSS Score: %0.04
- Published: Aug. 20, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-0099
In addWindow of WindowManagerService.java, there is a possible window overlay attack due to an insecure default value. This could lead to local escalation of privilege via tapjacking with no additional execution privileges needed. User interaction is need... Read more
Affected Products : android- EPSS Score: %0.04
- Published: Dec. 14, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGH- EPSS Score: %8.60
- Published: Dec. 27, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2017-2855
An exploitable buffer overflow vulnerability exists in the DDNS client used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.43. On devices with DDNS enabled, an attacker who is able to intercept HTTP connections will be able to fully... Read more
- EPSS Score: %0.42
- Published: Sep. 19, 2018
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2019-2094
In parseMPEGCCData of NuPlayerCCDecoder.cpp, there is a possible out of bounds write due to missing bounds checks. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Produc... Read more
Affected Products : android- EPSS Score: %0.18
- Published: Jun. 07, 2019
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-3834
A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 6.1.2. An application may be able to execute arbitrary code with kernel privileges.... Read more
Affected Products : watchos- EPSS Score: %0.37
- Published: Feb. 27, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-5610
Global TechStream (GTS) for TOYOTA dealers version 15.10.032 and earlier allows an attacker to cause a denial-of-service (DoS) condition and execute arbitrary code via unspecified vectors.... Read more
Affected Products : global_techstream- EPSS Score: %0.25
- Published: Jul. 30, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2014-9890
Off-by-one error in drivers/media/platform/msm/camera_v2/sensor/cci/msm_cci.c in the Qualcomm components in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices allows attackers to gain privileges via a crafted application that sends an I2C command, ... Read more
Affected Products : android- EPSS Score: %0.06
- Published: Aug. 06, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2020-0080
In onOpActiveChanged and related methods of AppOpsControllerImpl.java, there is a possible way to display an app overlaying other apps without the notification icon that it's overlaying. This could lead to local escalation of privilege with User execution... Read more
Affected Products : android- EPSS Score: %0.08
- Published: Apr. 17, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-14977
An issue was discovered in F-Secure SAFE 17.7 on macOS. The XPC services use the PID to identify the connecting client, which allows an attacker to perform a PID reuse attack and connect to a privileged XPC service, and execute privileged commands on the ... Read more
Affected Products : safe- EPSS Score: %0.80
- Published: Jun. 23, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2020-0267
In WindowManager, there is a possible launch of an unexpected app due to a confused deputy. This could lead to local escalation of privilege due to launching a malicious app instead of the one the user intended, with no additional execution privileges nee... Read more
Affected Products : android- EPSS Score: %0.03
- Published: Sep. 17, 2020
- Modified: Nov. 21, 2024