CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.
In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
In music service, there is a missing permission check. This could lead to local denial of service in contacts service with no additional execution privileges needed.
Admob, Android, Android_api, Android_browser, Android_debug_bridge, Android_one, Android_sdk, Android_sdk_platform_tools, Android_sdk_tools, Android_tv
2023-02-21
N/A
5.5 MEDIUM
In wlan driver, there is a possible missing permission check. This could lead to local In wlan driver, information disclosure.
The Custom Post Types and Custom Fields creator WordPress plugin before 2.3.3 does not sanitize and escape some of its settings, which could allow high-privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example, in multisite setup).
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/view_mechanic.php?id=.
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/services/manage_service.php?id=.
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/manage_mechanic.php?id=.
Web Based Quiz System v1.0 transmits user passwords in plaintext during the authentication process, allowing attackers to obtain users' passwords via a bruteforce attack.
