Page 46 of 8161 results (0.146 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

04 Dec 2024 — This could lead to local escalation of privilege with System execution privileges needed. • https://source.android.com/security/bulletin/pixel/2018-06-01 • CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

04 Dec 2024 — This could lead to local escalation of privilege with System execution privileges needed. • https://source.android.com/security/bulletin/pixel/2018-06-01 • CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

04 Dec 2024 — This could lead to local escalation of privilege with System execution privileges needed. • https://source.android.com/security/bulletin/pixel/2018-06-01 • CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: -EXPL: 0

04 Dec 2024 — Epic Games Launcher Incorrect Default Permissions Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Epic Games Launcher. This vulnerability allows local attackers to escalate privileges on affected installations of Epic Games Launcher. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary... • https://trello.com/c/tcS6Jcfy/578-epic-games-launcher-1720 • CWE-276: Incorrect Default Permissions •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

03 Dec 2024 — An implementation bug in the Kolide Agent (known as `launcher`) allows for local privilege escalation to the SYSTEM user on Windows 10 and 11. ... These incorrect default permissions in conjunction with an omitted SystemDrive environmental variable (when launcher starts osqueryd), allows a malicious actor with access to the local Windows device to successfully place an arbitrary DLL into the osqueryd process's search path. • https://github.com/kolide/launcher/pull/1510 • CWE-276: Incorrect Default Permissions CWE-456: Missing Initialization of a Variable •

CVSS: 7.6EPSS: 0%CPEs: 1EXPL: 0

03 Dec 2024 — This vulnerability allows local attackers to escalate privileges on affected installations of Samsung Galaxy S24. ... An attacker can leverage this vulnerability to escalate privileges and perform actions in the context of the user. • https://security.samsungmobile.com/serviceWeb.smsb?year=2024&month=12 •

CVSS: 5.4EPSS: 0%CPEs: -EXPL: 0

03 Dec 2024 — This vulnerability allows remote attackers to escalate privileges on affected installations of Samsung Galaxy S24 smartphones. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary script in the context of a WebView. • https://security.samsungmobile.com/serviceWeb.smsb?year=2024&month=12 •

CVSS: 7.8EPSS: 0%CPEs: -EXPL: 0

03 Dec 2024 — This vulnerability allows remote attackers to escalate privileges on affected installations of Samsung Galaxy S24 smartphones. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary script in the context of a WebView. • https://security.samsungmobile.com/serviceWeb.smsb?year=2024&month=12 •

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 0

02 Dec 2024 — In OSUInfo of OSUInfo.java, there is a possible escalation of privilege due to improper input validation. In OSUInfo of OSUInfo.java, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. This could lead to local escalation of privilege with no additional execution privileges needed. ... Esto podría provocar una escalad... • https://source.android.com/docs/security/bulletin/pixel/2018-07-01 • CWE-276: Incorrect Default Permissions •

CVSS: 7.8EPSS: 0%CPEs: 7EXPL: 0

02 Dec 2024 — This could lead to local escalation of privilege with User execution privileges needed. ... Esto podría provocar una escalada local de privilegios con privilegios de ejecución de usuario necesarios. ... This could lead to local escalation of privilege with User execution privileges needed. • https://source.android.com/docs/security/bulletin/pixel/2018-07-01 • CWE-787: Out-of-bounds Write •