Total
5279 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2016-1909 | 1 Fortinet | 1 Fortios | 2016-07-15 | 10.0 HIGH | 9.8 CRITICAL |
Fortinet FortiAnalyzer before 5.0.12 and 5.2.x before 5.2.5; FortiSwitch 3.3.x before 3.3.3; FortiCache 3.0.x before 3.0.8; and FortiOS 4.1.x before 4.1.11, 4.2.x before 4.2.16, 4.3.x before 4.3.17 and 5.0.x before 5.0.8 have a hardcoded passphrase for the Fortimanager_Access account, which allows remote attackers to obtain administrative access via an SSH session. | |||||
CVE-2013-6373 | 1 Jenkins-ci | 1 Exclusion | 2016-07-15 | 5.5 MEDIUM | N/A |
The Exclusion plugin before 0.9 for Jenkins does not properly prevent access to resource locks, which allows remote authenticated users to list and release resources via unspecified vectors. | |||||
CVE-2014-0974 | 1 Little Kernel Project | 1 Little Kernel Bootloader | 2016-07-13 | 1.9 LOW | N/A |
The boot_linux_from_mmc function in app/aboot/aboot.c in the Little Kernel (LK) bootloader, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly validate a certain address value, which allows attackers to write data to a controllable memory location by leveraging the ability to initiate an attempted boot of an arbitrary image. | |||||
CVE-2016-3795 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek power driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28085222 and MediaTek internal bug ALPS02677244. | |||||
CVE-2016-3771 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek drivers in Android before 2016-07-05 on Android One devices allow attackers to gain privileges via a crafted application, aka Android internal bug 29007611 and MediaTek internal bug ALPS02703102. | |||||
CVE-2016-3807 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The serial peripheral interface driver in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 28402196. | |||||
CVE-2016-3805 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek power management driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28333002 and MediaTek internal bug ALPS02694412. | |||||
CVE-2016-3799 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek video driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28175025 and MediaTek internal bug ALPS02693738. | |||||
CVE-2016-3811 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The kernel video driver in Android before 2016-07-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 28447556. | |||||
CVE-2016-3798 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek hardware sensor driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28174490 and MediaTek internal bug ALPS02703105. | |||||
CVE-2016-3800 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek video driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28175027 and MediaTek internal bug ALPS02693739. | |||||
CVE-2016-3804 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek power management driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28332766 and MediaTek internal bug ALPS02694410. | |||||
CVE-2016-3802 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The kernel filesystem implementation in Android before 2016-07-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 28271368. | |||||
CVE-2016-3801 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek GPS driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28174914 and MediaTek internal bug ALPS02688853. | |||||
CVE-2016-3803 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The kernel filesystem implementation in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 28588434. | |||||
CVE-2016-3808 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The serial peripheral interface driver in Android before 2016-07-05 on Pixel C devices allows attackers to gain privileges via a crafted application, aka internal bug 28430009. | |||||
CVE-2016-3806 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek display driver in Android before 2016-07-05 on Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 28402341 and MediaTek internal bug ALPS02715341. | |||||
CVE-2016-3792 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
CORE/HDD/src/wlan_hdd_hostapd.c in the Qualcomm Wi-Fi driver in Android before 2016-07-05 on Nexus 7 (2013) devices mishandles userspace data copying, which allows attackers to gain privileges via a crafted application, aka Android internal bug 27725204 and Qualcomm internal bug CR561022. | |||||
CVE-2016-3772 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek drivers in Android before 2016-07-05 on Android One devices allow attackers to gain privileges via a crafted application, aka Android internal bug 29008188 and MediaTek internal bug ALPS02703102. | |||||
CVE-2016-3770 | 1 Google | 1 Android | 2016-07-12 | 9.3 HIGH | 7.8 HIGH |
The MediaTek drivers in Android before 2016-07-05 on Android One devices allow attackers to gain privileges via a crafted application, aka Android internal bug 28346752 and MediaTek internal bug ALPS02703102. |