CWE-264 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kategori: CWE-264 - CVE listesi
CWE 37 kayıt
Low CVSS: 2.8

CVE-2025-58282

Permission control vulnerability in the camera module. Successful exploitation of this vulnerability may affect service confidentiality.
Medium CVSS: 6.2

CVE-2025-54654

Permission control vulnerability in the Gallery module. Successful exploitation of this vulnerability may affect service confidentiality
Medium CVSS: 6.8

CVE-2025-58276

Permission verification vulnerability in the home screen module Impact: Successful exploitation of this vulnerability may affect availability.
Medium CVSS: 6.2

CVE-2025-54608

Vulnerability that allows setting screen rotation direction without permission verification in the screen management module. Impact: Successful exploitation of this vulnerability may cause device screen orientation to be arbitrarily set.
Medium CVSS: 5.9

CVE-2025-53186

Vulnerability that allows third-party call apps to send broadcasts without verification in the audio framework module Impact: Successful exploitation of this vulnerability may affect availability.
Medium CVSS: 4.8

CVE-2025-53178

Permission bypass vulnerability in the calendar storage module Impact: Successful exploitation of this vulnerability may affect the schedule reminder function of head units.
Low CVSS: 3.9

CVE-2025-53177

Permission bypass vulnerability in the calendar storage module Impact: Successful exploitation of this vulnerability may affect the schedule syncing function of watches.
Low CVSS: 2.1

CVE-2025-5874

A vulnerability was found in Redash up to 10.1.0/25.1.0. It has been rated as problematic. This issue affects the function run_query of the file /query_runner/python.py of the component getattr Handler. The manipulation leads to sandbox iss…
High CVSS: 7.8

CVE-2025-48903

Permission bypass vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect availability.
Medium CVSS: 5.3

CVE-2025-5321

A vulnerability classified as critical was found in aimhubio aim up to 3.29.1. This vulnerability affects the function RestrictedPythonQuery of the file /aim/storage/query.py of the component run_view Object Handler. The manipulation of the…
Medium CVSS: 6.2

CVE-2025-46587

Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Medium CVSS: 5.8

CVE-2025-20145

A vulnerability in the access control list (ACL) processing in the egress direction of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL. This vulnerability exists because certain packets ar…
High CVSS: 7.9

CVE-2024-53011

Information disclosure may occur due to improper permission and access controls to Video Analytics engine.
High CVSS: 7.5

CVE-2024-56444

Cross-process screen stack vulnerability in the UIExtension module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Medium CVSS: 6.2

CVE-2024-56440

Permission control vulnerability in the Connectivity module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
Medium CVSS: 6.5

CVE-2023-52955

Vulnerability of improper authentication in the ANS system service module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
High CVSS: 7.5

CVE-2024-43064

Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.