Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

CVE güvenlik açıkları, KEV etiketleri, detay sayfaları ve kategori bazlı listeleme.
Toplam kayıt70,903
Sayfa3391 / 3546
FiltreYok
High CVSS: 7.8 Yayın: 2025-01-21 23:15:11

CVE-2023-40132

In setActualDefaultRingtoneUri of RingtoneManager.java, there is a possible way to bypass content providers read permissions due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges n…
Medium CVSS: 5.5 Yayın: 2025-01-21 23:15:11

CVE-2023-40108

In multiple locations, there is a possible way to access media content belonging to another user due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is no…
Medium CVSS: 6.5 Yayın: 2025-01-21 23:15:10

CVE-2023-37035

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma
High CVSS: 8.8 Yayın: 2025-01-21 22:15:12

CVE-2025-23196

A code injection vulnerability exists in the Ambari Alert Definition feature, allowing authenticated users to inject and execute arbitrary shell commands. The vulnerability arises when defining alert scripts, where the script filename field is exe…
High CVSS: 7.5 Yayın: 2025-01-21 22:15:12

CVE-2025-23195

An XML External Entity (XXE) vulnerability exists in the Ambari/Oozie project, allowing an attacker to inject malicious XML entities. This vulnerability occurs due to insecure parsing of XML input using the `DocumentBuilderFactory` class without d…
High CVSS: 8.8 Yayın: 2025-01-21 22:15:12

CVE-2024-51941

A remote code injection vulnerability exists in the Ambari Metrics and AMS Alerts feature, allowing authenticated users to inject and execute arbitrary code. The vulnerability occurs when processing alert definitions, where malicious input can be…