CVE-2023-21132
- EPSS 0%
- Veröffentlicht 14.08.2023 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:42:13
In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of privilege with physical access to a device that's been factory reset ...
CVE-2023-21133
- EPSS 0%
- Veröffentlicht 14.08.2023 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:42:13
In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of privilege with physical access to a device that's been factory reset ...
CVE-2023-21134
- EPSS 0%
- Veröffentlicht 14.08.2023 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:42:13
In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of privilege with physical access to a device that's been factory reset ...
CVE-2023-21140
- EPSS 0%
- Veröffentlicht 14.08.2023 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:42:14
In onCreate of ManagePermissionsActivity.java, there is a possible way to bypass factory reset protections due to a missing permission check. This could lead to local escalation of privilege with physical access to a device that's been factory reset ...
CVE-2023-21242
- EPSS 0.9%
- Veröffentlicht 14.08.2023 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:42:28
In isServerCertChainValid of InsecureEapNetworkHandler.java, there is a possible way to trust an imposter server due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User ...
CVE-2023-21264
- EPSS 0.01%
- Veröffentlicht 14.08.2023 21:15:11
- Zuletzt bearbeitet 21.11.2024 07:42:30
In multiple functions of mem_protect.c, there is a possible way to access hypervisor memory due to a memory access check in the wrong place. This could lead to local escalation of privilege with System execution privileges needed. User interaction is...
CVE-2023-20965
- EPSS 1.04%
- Veröffentlicht 14.08.2023 21:15:10
- Zuletzt bearbeitet 21.11.2024 07:41:54
In processMessageImpl of ClientModeImpl.java, there is a possible credential disclosure in the TOFU flow due to a logic error in the code. This could lead to remote escalation of privilege with no additional execution privileges needed. User interact...
CVE-2023-20806
- EPSS 0.02%
- Veröffentlicht 07.08.2023 04:15:14
- Zuletzt bearbeitet 21.11.2024 07:41:33
In hcp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07340433; Issue ID...
CVE-2023-20807
- EPSS 0.02%
- Veröffentlicht 07.08.2023 04:15:14
- Zuletzt bearbeitet 21.11.2024 07:41:34
In dpe, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07608433; Issue ID...
CVE-2023-20808
- EPSS 0.01%
- Veröffentlicht 07.08.2023 04:15:14
- Zuletzt bearbeitet 21.11.2024 07:41:34
In OPTEE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: DTV03645895; Issue I...