Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In 2022
Some smartphones have the out-of-bounds write vulnerability. Successful exploitation of this vulnerability may cause system service exceptions.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-12-20
Some smartphones have configuration issues. Successful exploitation of this vulnerability may cause privilege escalation, which results in system service exceptions.
CVSS Score
9.8
EPSS Score
0.001
Published
2022-12-20
The multi-screen collaboration module has a path traversal vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
OpenFGA is an authorization/permission engine built for developers and inspired by Google Zanzibar. During an internal security assessment, it was discovered that OpenFGA version 0.3.0 is vulnerable to authorization bypass under certain conditions. This issue has been patched in version 0.3.1 and is backward compatible.
CVSS Score
7.7
EPSS Score
0.0
Published
2022-12-20
IBM Spectrum Control 5.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 233982.
CVSS Score
5.1
EPSS Score
0.0
Published
2022-12-20
OnCommand Insight versions 7.3.1 through 7.3.14 are susceptible to an authentication bypass vulnerability in the Data Warehouse component.
CVSS Score
8.6
EPSS Score
0.001
Published
2022-12-20
IBM Security Guardium 11.4 could allow a privileged user to obtain sensitive information inside of an HTTP response. IBM X-Force ID: 235405.
CVSS Score
4.4
EPSS Score
0.0
Published
2022-12-20
Some smartphones have authentication-related (including session management) vulnerabilities as the setup wizard is bypassed. Successful exploitation of this vulnerability affects the smartphone availability.
CVSS Score
5.5
EPSS Score
0.0
Published
2022-12-20
The backup module has a path traversal vulnerability. Successful exploitation of this vulnerability causes unauthorized access to other system files.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
The system tool has inconsistent serialization and deserialization. Successful exploitation of this vulnerability will cause unauthorized startup of components.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20


Contact Us

Shodan ® - All rights reserved