Vulnerabilities (CVE)

Filtered by CWE-20
Total 10018 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-34146 1 Qualcomm 194 Csr8811, Csr8811 Firmware, Ipq5010 and 191 more 2024-04-12 N/A 7.5 HIGH
Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation.
CVE-2022-33216 1 Qualcomm 36 Qam8295p, Qam8295p Firmware, Qca6574a and 33 more 2024-04-12 N/A 5.5 MEDIUM
Transient Denial-of-service in Automotive due to improper input validation while parsing ELF file.
CVE-2022-33211 1 Qualcomm 24 Mdm8207, Mdm8207 Firmware, Mdm9205 and 21 more 2024-04-12 N/A 9.8 CRITICAL
memory corruption in modem due to improper check while calculating size of serialized CoAP message
CVE-2022-25729 1 Qualcomm 60 Ar8031, Ar8031 Firmware, Csra6620 and 57 more 2024-04-12 N/A 9.8 CRITICAL
Memory corruption in modem due to improper length check while copying into memory
CVE-2023-33057 1 Qualcomm 202 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 199 more 2024-04-12 N/A 7.5 HIGH
Transient DOS in Multi-Mode Call Processor while processing UE policy container.
CVE-2023-33042 1 Qualcomm 148 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 145 more 2024-04-12 N/A 7.5 HIGH
Transient DOS in Modem after RRC Setup message is received.
CVE-2023-33104 2024-04-12 N/A 7.5 HIGH
Transient DOS while processing PDU Release command with a parameter PDU ID out of range.
CVE-2023-33103 2024-04-12 N/A 7.5 HIGH
Transient DOS while processing CAG info IE received from NW.
CVE-2023-28578 2024-04-12 N/A 9.3 CRITICAL
Memory corruption in Core Services while executing the command for removing a single event listener.
CVE-2024-21473 2024-04-12 N/A 9.8 CRITICAL
Memory corruption while redirecting log file to any file location with any file name.
CVE-2024-21453 2024-04-12 N/A 7.5 HIGH
Transient DOS while decoding message of size that exceeds the available system memory.
CVE-2024-21452 2024-04-12 N/A 7.3 HIGH
Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.
CVE-2023-33100 2024-04-12 N/A 7.5 HIGH
Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.
CVE-2023-33099 2024-04-12 N/A 7.5 HIGH
Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
CVE-2024-26197 2024-04-11 N/A 6.5 MEDIUM
Windows Standards-Based Storage Management Service Denial of Service Vulnerability
CVE-2024-26164 2024-04-11 N/A 8.8 HIGH
Microsoft Django Backend for SQL Server Remote Code Execution Vulnerability
CVE-2024-3101 2024-04-10 N/A 6.7 MEDIUM
In mintplex-labs/anything-llm, an improper input validation vulnerability allows attackers to escalate privileges by deactivating 'Multi-User Mode'. By sending a specially crafted curl request with the 'multi_user_mode' parameter set to false, an attacker can deactivate 'Multi-User Mode'. This action permits the creation of a new admin user without requiring a password, leading to unauthorized administrative access.
CVE-2024-3385 2024-04-10 N/A 7.5 HIGH
A packet processing mechanism in Palo Alto Networks PAN-OS software enables a remote attacker to reboot hardware-based firewalls. Repeated attacks eventually cause the firewall to enter maintenance mode, which requires manual intervention to bring the firewall back online. This affects the following hardware firewall models: - PA-5400 Series firewalls - PA-7000 Series firewalls
CVE-2024-20670 2024-04-10 N/A 8.1 HIGH
Outlook for Windows Spoofing Vulnerability
CVE-2024-26253 2024-04-10 N/A 6.8 MEDIUM
Windows rndismp6.sys Remote Code Execution Vulnerability