CVE Feed

    Dashboard / CVE

    4.4
    Medium

    CVE-2021-0452

    Last Modified: 21 Nov 2024

    In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-175117261

    Published: 10 Mar 2021
    4.4
    Medium

    CVE-2021-0451

    Last Modified: 21 Nov 2024

    In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-175117871

    Published: 10 Mar 2021
    4.4
    Medium

    CVE-2021-0450

    Last Modified: 21 Nov 2024

    In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-175117880

    Published: 10 Mar 2021
    4.4
    Medium

    CVE-2021-0449

    Last Modified: 21 Nov 2024

    In the Titan M chip firmware, there is a possible disclosure of stack memory due to uninitialized data. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-175117965

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0389

    Last Modified: 21 Nov 2024

    In setNightModeActivated of UiModeManagerService.java, there is a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-168039904

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0388

    Last Modified: 21 Nov 2024

    In onReceive of ImsPhoneCallTracker.java, there is a possible misattribution of data usage due to an incorrect broadcast handler. This could lead to local escalation of privilege resulting in attributing video call data to the wrong app, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-162741489

    Published: 10 Mar 2021
    6.4
    Medium

    CVE-2021-0387

    Last Modified: 21 Nov 2024

    In FindQuotaDeviceForUuid of QuotaUtils.cpp, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169421939

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0386

    Last Modified: 21 Nov 2024

    In onCreate of UsbConfirmActivity, there is a possible tapjacking vector due to an insecure default value. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-173421110

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0385

    Last Modified: 21 Nov 2024

    In createConnectToAvailableNetworkNotification of ConnectToNetworkNotificationBuilder.java, there is a possible connection to untrusted WiFi networks due to notification interaction above the lockscreen. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-172584372

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0383

    Last Modified: 21 Nov 2024

    In done of CaptivePortalLoginActivity.java, there is a confused deputy. This could lead to local escalation of privilege in carrier settings with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-160871056

    Published: 10 Mar 2021
    5.5
    Medium

    CVE-2021-0382

    Last Modified: 21 Nov 2024

    In checkSlicePermission of SliceManagerService.java, there is a possible resource exposure due to an incorrect permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-140727941

    Published: 10 Mar 2021
    5.5
    Medium

    CVE-2021-0381

    Last Modified: 21 Nov 2024

    In updateNotifications of DeviceStorageMonitorService.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local information disclosure with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-153466381

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0380

    Last Modified: 21 Nov 2024

    In onReceive of DcTracker.java, there is a possible way to trigger a provisioning URL and modify other telephony settings due to a missing permission check. This could lead to local escalation of privilege during the onboarding flow with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-172459128

    Published: 10 Mar 2021
    6.5
    Medium

    CVE-2021-0379

    Last Modified: 21 Nov 2024

    In getUpTo17bits of pvmp3_getbits.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-154075955

    Published: 10 Mar 2021
    6.5
    Medium

    CVE-2021-0378

    Last Modified: 21 Nov 2024

    In getNbits of pvmp3_getbits.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-154076193

    Published: 10 Mar 2021
    5.5
    Medium

    CVE-2021-0377

    Last Modified: 21 Nov 2024

    In DeltaPerformer::Write of delta_performer.cc, there is a possible use of untrusted input due to improper input validation. This could lead to a local bypass of defense in depth protections with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-160800689

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0376

    Last Modified: 21 Nov 2024

    In checkUriPermission and related functions of MediaProvider.java, there is a possible way to access external files due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-115619667

    Published: 10 Mar 2021
    5.5
    Medium

    CVE-2021-0375

    Last Modified: 21 Nov 2024

    In onPackageModified of VoiceInteractionManagerService.java, there is a possible change of default applications due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-167261484

    Published: 10 Mar 2021
    4.4
    Medium

    CVE-2021-0374

    Last Modified: 21 Nov 2024

    In BnAudioPolicyService::onTransact of IAudioPolicyService.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169572641

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0372

    Last Modified: 21 Nov 2024

    In getMediaOutputSliceAction of RemoteMediaSlice.java, there is a possible permission bypass due to an unsafe PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-174047735

    Published: 10 Mar 2021
    6.7
    Medium

    CVE-2021-0371

    Last Modified: 21 Nov 2024

    In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-164440989

    Published: 10 Mar 2021
    6.7
    Medium

    CVE-2021-0370

    Last Modified: 21 Nov 2024

    In Write of NxpMfcReader.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the NFC server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169259605

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0369

    Last Modified: 21 Nov 2024

    In CrossProfileAppsServiceImpl.java, there is the possibility of an application's INTERACT_ACROSS_PROFILES grant state not displaying properly in the setting UI due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-166561076

    Published: 10 Mar 2021
    6.5
    Medium

    CVE-2021-0368

    Last Modified: 21 Nov 2024

    In oggpack_look of bitwise.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169829774

    Published: 10 Mar 2021
    7.8
    High

    CVE-2020-0025

    Last Modified: 21 Nov 2024

    In deletePackageVersionedInternal of PackageManagerService.java, there is a possible way to exit Screen Pinning due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-135604684

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2021-24030

    Last Modified: 21 Nov 2024

    The fbgames protocol handler registered as part of Facebook Gameroom does not properly quote arguments passed to the executable. That allows a malicious URL to cause code execution. This issue affects versions prior to v1.26.0.

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2021-24025

    Last Modified: 21 Nov 2024

    Due to incorrect string size calculations inside the preg_quote function, a large input string passed to the function can trigger an integer overflow leading to a heap overflow. This issue affects HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and versions 4.94.0, 4.95.0, 4.96.0, 4.97.0, 4.98.0.

    Published: 10 Mar 2021
    7.5
    High

    CVE-2020-1921

    Last Modified: 21 Nov 2024

    In the crypt function, we attempt to null terminate a buffer using the size of the input salt without validating that the offset is within the buffer. This issue affects HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and versions 4.94.0, 4.95.0, 4.96.0, 4.97.0, 4.98.0.

    Published: 10 Mar 2021
    7.5
    High

    CVE-2020-1919

    Last Modified: 21 Nov 2024

    Incorrect bounds calculations in substr_compare could lead to an out-of-bounds read when the second string argument passed in is longer than the first. This issue affects HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and versions 4.94.0, 4.95.0, 4.96.0, 4.97.0, 4.98.0.

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2020-1917

    Last Modified: 21 Nov 2024

    xbuf_format_converter, used as part of exif_read_data, was appending a terminating null character to the generated string, but was not using its standard append char function. As a result, if the buffer was full, it would result in an out-of-bounds write. This issue affects HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and versions 4.94.0, 4.95.0, 4.96.0, 4.97.0, 4.98.0.

    Published: 10 Mar 2021
    7.5
    High

    CVE-2020-1918

    Last Modified: 21 Nov 2024

    In-memory file operations (ie: using fopen on a data URI) did not properly restrict negative seeking, allowing for the reading of memory prior to the in-memory buffer. This issue affects HHVM versions prior to 4.56.3, all versions between 4.57.0 and 4.80.1, all versions between 4.81.0 and 4.93.1, and versions 4.94.0, 4.95.0, 4.96.0, 4.97.0, 4.98.0.

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2020-1916

    Last Modified: 21 Nov 2024

    An incorrect size calculation in ldap_escape may lead to an integer overflow when overly long input is passed in, resulting in an out-of-bounds write. This issue affects HHVM prior to 4.56.2, all versions between 4.57.0 and 4.78.0, 4.79.0, 4.80.0, 4.81.0, 4.82.0, 4.83.0.

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0399

    Last Modified: 21 Nov 2024

    In qtaguid_untag of xt_qtaguid.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-176919394References: Upstream kernel

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0392

    Last Modified: 21 Nov 2024

    In main of main.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-175124730

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0390

    Last Modified: 21 Nov 2024

    In various methods of WifiNetworkSuggestionsManager.java, there is a possible modification of suggested networks due to a missing permission check. This could lead to local escalation of privilege by a background user on the same device with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-174749461

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2021-0397

    Last Modified: 21 Nov 2024

    In sdp_copy_raw_data of sdp_discovery.cc, there is a possible system compromise due to a double free. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-174052148

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0398

    Last Modified: 21 Nov 2024

    In bindServiceLocked of ActiveServices.java, there is a possible foreground service launch due to a confused deputy. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-173516292

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0391

    Last Modified: 21 Nov 2024

    In onCreate() of ChooseTypeAndAccountActivity.java, there is a possible way to learn the existence of an account, without permissions, due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-172841550

    Published: 10 Mar 2021
    5.5
    Medium

    CVE-2021-0394

    Last Modified: 21 Nov 2024

    In android_os_Parcel_readString8 of android_os_Parcel.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-172655291

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0395

    Last Modified: 21 Nov 2024

    In StopServicesAndLogViolations of reboot.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-170315126

    Published: 10 Mar 2021
    7.8
    High

    CVE-2021-0393

    Last Modified: 21 Nov 2024

    In Scanner::LiteralBuffer::NewCapacity of scanner.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution if an attacker can supply a malicious PAC file, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-168041375

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2021-0396

    Last Modified: 21 Nov 2024

    In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm.cc and related files, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-160610106

    Published: 10 Mar 2021
    6.5
    Medium

    CVE-2020-5016

    Last Modified: 21 Nov 2024

    IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to traverse directories on the system. When application security is disabled and JAX-RPC applications are present, an attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary xml files on the system. This does not occur if Application security is enabled. IBM X-Force ID: 193556.

    Published: 10 Mar 2021
    5.5
    Medium

    CVE-2020-4717

    Last Modified: 21 Nov 2024

    A vulnerability exists in IBM SPSS Modeler Subscription Installer that allows a user with create symbolic link permission to write arbitrary file in another protected path during product installation. IBM X-Force ID: 187727.

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2021-28122

    Last Modified: 21 Nov 2024

    A request-validation issue was discovered in Open5GS 2.1.3 through 2.2.x before 2.2.1. The WebUI component allows an unauthenticated user to use a crafted HTTP API request to create, read, update, or delete entries in the subscriber database. For example, new administrative users can be added. The issue occurs because Express is not set up to require authentication.

    Published: 10 Mar 2021
    5.4
    Medium

    CVE-2020-35752

    Last Modified: 18 Nov 2025

    Baby Care System 1.0 is affected by a cross-site scripting (XSS) vulnerability in the Edit Page tab through the Post title parameter.

    Published: 10 Mar 2021
    6.1
    Medium

    CVE-2021-21491

    Last Modified: 21 Nov 2024

    SAP Netweaver Application Server Java (Applications based on WebDynpro Java) versions 7.00, 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allow an attacker to redirect users to a malicious site due to Reverse Tabnabbing vulnerabilities.

    Published: 10 Mar 2021
    5.4
    Medium

    CVE-2021-3224

    Last Modified: 21 Nov 2024

    A stored cross-site scripting (XSS) vulnerability in cszcms 1.2.9 exists in /admin/pages/new via the content parameter.

    Published: 10 Mar 2021
    4.3
    Medium

    CVE-2020-28705

    Last Modified: 21 Nov 2024

    FUEL CMS 1.4.13 contains a cross-site request forgery (CSRF) vulnerability that can delete a page via a post ID to /pages/delete/3.

    Published: 10 Mar 2021
    9.8
    Critical

    CVE-2020-24791

    Last Modified: 21 Nov 2024

    FUEL CMS 1.4.8 allows SQL injection via the 'fuel_replace_id' parameter in pages/replace/1. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

    Published: 10 Mar 2021