cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2018-9365,https://securityvulnerability.io/vulnerability/CVE-2018-9365,Possible Out of Bounds Read and Code Execution Vulnerability in smp_l2c.cc,"The vulnerability in question originates from the smp_data_received function within the smp_l2c.cc file, where a missing bounds check can lead to an out of bounds read. This flaw opens a pathway for remote code execution, enabling unauthorized commands to be executed without requiring additional execution privileges from the user. Exploitation of this vulnerability necessitates some form of user interaction, potentially compromising device security.",Google,Andrioid,8.8,HIGH,0.0006099999882280827,false,false,false,false,,false,false,2024-11-19T20:44:28.663Z,0 CVE-2023-21270,https://securityvulnerability.io/vulnerability/CVE-2023-21270,Potential Local Escalation of Privilege Vulnerability in PermissionManagerServiceImpl,"In the PermissionManagerServiceImpl.java of Android, a flaw exists in the restorePermissionState function that could allow malicious applications to retain permissions they should have lost after system updates. Incorrect handling of permission flags means that apps might bypass the intended restrictions designed to revoke certain permissions. Exploitation of this vulnerability necessitates user execution privileges, enabling attackers to escalate their access without needing any user interaction, which amplifies the risk profile associated with this vulnerability.",Google,Andrioid,7.8,HIGH,0.0004299999854993075,false,false,false,false,,false,false,2024-11-19T18:00:47.701Z,0