CVE-2023-21000 to CVE-2023-21999
42 CVEs with public proof-of-concept exploits.
- CVE-2023-210361 PoCIn BitmapExport.java, there is a possible failure to truncate images due to a logic error in the code.Product: AndroidVersions: Android…
- CVE-2023-210861 PoCIn isToggleable of SecureNfcEnabler.java and SecureNfcPreferenceController.java, there is a possible way to enable NFC from a secondary…
- CVE-2023-210941 PoCIn sanitize of LayerState.cpp, there is a possible way to take over the screen display and swap the display content due to a missing…
- CVE-2023-210972 PoCsIn toUriInner of Intent.java, there is a possible way to launch an arbitrary activity due to a confused deputy. This could lead to local…
- CVE-2023-211091 PoCIn multiple places of AccessibilityService, there is a possible way to hide the app from the user due to a logic error in the code. This…
- CVE-2023-211182 PoCsIn unflattenString8 of Sensor.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local…
- CVE-2023-211251 PoCIn btif_hh_hsdata_rpt_copy_cb of bta_hh.cc, there is a possible way to corrupt memory due to a use after free. This could lead to local…
- CVE-2023-211731 PoCIn multiple methods of DataUsageList.java, there is a possible way to learn about admin user's network activities due to a missing…
- CVE-2023-212381 PoCIn visitUris of RemoteViews.java, there is a possible leak of images between users due to a confused deputy. This could lead to local…
- CVE-2023-212461 PoCIn ShortcutInfo of ShortcutInfo.java, there is a possible way for an app to retain notification listening access due to an uncaught…
- CVE-2023-212511 PoCIn onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper input validation.…
- CVE-2023-212722 PoCsIn readFrom of Uri.java, there is a possible bad URI permission grant due to improper input validation. This could lead to local…
- CVE-2023-212751 PoCIn decideCancelProvisioningDialog of AdminIntegratedFlowPrepareActivity.java, there is a possible way to bypass factory reset protections…
- CVE-2023-212811 PoCIn multiple functions of KeyguardViewMediator.java, there is a possible failure to lock after screen timeout due to a logic error in the…
- CVE-2023-212822 PoCsIn TRANSPOSER_SETTINGS of lpp_tran.h, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote…
- CVE-2023-212841 PoCIn multiple functions of DevicePolicyManager.java, there is a possible way to prevent enabling the Find my Device feature due to improper…
- CVE-2023-212861 PoCIn visitUris of RemoteViews.java, there is a possible way to reveal images across users due to a missing permission check. This could lead…
- CVE-2023-212881 PoCIn visitUris of Notification.java, there is a possible way to reveal images across users due to a missing permission check. This could…
- CVE-2023-215371 PoCMicrosoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
- CVE-2023-215521 PoCWindows GDI Elevation of Privilege Vulnerability
- CVE-2023-215548 PoCsMicrosoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
- CVE-2023-215632 PoCsBitLocker Security Feature Bypass Vulnerability
- CVE-2023-216082 PoCsKEVAdobe Acrobat Reader DC resetForm Use-After-Free Remote Code Execution Vulnerability
- CVE-2023-216741 PoCKEVWindows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
- CVE-2023-217072 PoCsMicrosoft Exchange Server Remote Code Execution Vulnerability
- CVE-2023-2171618 PoCsMicrosoft Word Remote Code Execution Vulnerability
- CVE-2023-217391 PoCWindows Bluetooth Driver Elevation of Privilege Vulnerability
- CVE-2023-217421 PoCMicrosoft SharePoint Server Remote Code Execution Vulnerability
- CVE-2023-217463 PoCsWindows NTLM Elevation of Privilege Vulnerability
- CVE-2023-217524 PoCsWindows Backup Service Elevation of Privilege Vulnerability
- CVE-2023-217661 PoCWindows Overlay Filter Information Disclosure Vulnerability
- CVE-2023-2176823 PoCsWindows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
- CVE-2023-217731 PoCWindows Kernel Elevation of Privilege Vulnerability
- CVE-2023-218223 PoCsWindows Graphics Component Elevation of Privilege Vulnerability
- CVE-2023-218231 PoCKEVWindows Graphics Component Remote Code Execution Vulnerability
- CVE-2023-218371 PoCVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected…
- CVE-2023-2183913 PoCsKEVVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected…
- CVE-2023-218871 PoCVulnerability in the MySQL Server product of Oracle MySQL (component: Server: GIS). Supported versions that are affected are 8.0.31 and…
- CVE-2023-219313 PoCsVulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected…
- CVE-2023-219391 PoCVulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Swing). Supported versions…
- CVE-2023-219872 PoCsVulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are…
- CVE-2023-219911 PoCVulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are…