cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-20039,https://securityvulnerability.io/vulnerability/CVE-2024-20039,Possible Out of Bounds Write in Modem Protocol Could Lead to Remote Code Execution,"In modem protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01240012; Issue ID: MSV-1215.",MediaTek,"Mt2731, Mt2735, Mt2737, Mt3967, Mt6297, Mt6298, Mt6739, Mt6761, Mt6762, Mt6762d, Mt6762m, Mt6763, Mt6765, Mt6765t, Mt6767, Mt6768, Mt6769, Mt6769t, Mt6769z, Mt6771, Mt6779, Mt6781, Mt6783, Mt6785, Mt6785t, Mt6785u, Mt6789, Mt6813, Mt6815, Mt6833, Mt6835, Mt6853, Mt6855, Mt6873, Mt6875, Mt6875t, Mt6877, Mt6879, Mt6880, Mt6883, Mt6885, Mt6886, Mt6889, Mt6890, Mt6891, Mt6893, Mt6895, Mt6895t, Mt6896, Mt6897, Mt6980, Mt6980d, Mt6983, Mt6985, Mt6986, Mt6986d, Mt6989, Mt6990, Mt8666, Mt8667, Mt8673, Mt8675, Mt8676, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8791, Mt8791t, Mt8792, Mt8796, Mt8797, Mt8798",,,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-04-01T03:15:00.000Z,0 CVE-2023-32890,https://securityvulnerability.io/vulnerability/CVE-2023-32890,Possible System Crash Due to Improper Input Validation,"A flaw exists in the MediaTek modem EMM due to inadequate input validation processes. This vulnerability allows attackers to potentially cause a system crash, resulting in a remote denial of service condition. Critically, the exploitation of this vulnerability does not require any user interaction, making it a significant security concern for users of the affected products. The issue has been documented under Patch ID: MOLY01183647 and pertains to Issue ID: MOLY01183647 (MSV-963).",MediaTek,"MT2731, MT6767, MT6768, MT6769, MT6769T, MT6769Z, MT8786",7.5,HIGH,0.00139999995008111,false,,false,false,false,,,false,false,,2024-01-02T03:15:00.000Z,0 CVE-2023-32840,https://securityvulnerability.io/vulnerability/CVE-2023-32840,Out of Bounds Write Vulnerability in MediaTek Modem CCCI,"A vulnerability within the MediaTek modem's CCCI component has been identified, allowing for an out of bounds write due to a missing bounds check. This issue could potentially facilitate local escalation of privileges, where system execution privileges are required for successful exploitation. User interaction may be necessary to execute the exploit, highlighting the importance of adequate security measures in mitigating risks associated with this vulnerability. Users are encouraged to apply the necessary patches to safeguard against possible exploits.",MediaTek,"Mt2731, Mt2735, Mt6731, Mt6739, Mt6761, Mt6762, Mt6763, Mt6765, Mt6767, Mt6768, Mt6769, Mt6769t, Mt6769z, Mt6771, Mt6771t, Mt6813, Mt6833, Mt6833p, Mt6835, Mt6853, Mt6853t, Mt6855, Mt6873, Mt6875, Mt6877, Mt6877t, Mt6878, Mt6879, Mt6880, Mt6883, Mt6885, Mt6886, Mt6889, Mt6890, Mt6891, Mt6893, Mt6895, Mt6895t, Mt6896, Mt6897, Mt6980, Mt6980d, Mt6983t, Mt6983w, Mt6983z, Mt6985, Mt6985t, Mt6989, Mt6990, Mt8666, Mt8667, Mt8673, Mt8675, Mt8765, Mt8766, Mt8768, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8791t, Mt8797, Mt8798",6.5,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-11-06T04:15:00.000Z,0 CVE-2023-20819,https://securityvulnerability.io/vulnerability/CVE-2023-20819,Out of Bounds Write Vulnerability in CDMA PPP Protocol by MediaTek,"The CDMA PPP protocol in MediaTek devices contains a vulnerability characterized by an out of bounds write resulting from a missing bounds check. This flaw allows an attacker to perform remote privilege escalation without requiring any user interaction or special execution privileges. The potential exploitation of this vulnerability could lead to significant security risks, making prompt attention to the issue critical. Affected users are advised to apply patches and updates to mitigate this vulnerability effectively.",MediaTek,"Mt2731, Mt6570, Mt6580, Mt6595, Mt6732, Mt6735, Mt6737, Mt6737m, Mt6738, Mt6739, Mt6750, Mt6750s, Mt6752, Mt6753, Mt6755, Mt6757, Mt6758, Mt6761, Mt6762, Mt6762d, Mt6762m, Mt6763, Mt6765, Mt6765t, Mt6767, Mt6768, Mt6769, Mt6769t, Mt6769z, Mt6771, Mt6775, Mt6779, Mt6781, Mt6783, Mt6785, Mt6785t, Mt6789, Mt6795, Mt6797, Mt6799, Mt6813, Mt6815, Mt6833, Mt6835, Mt6853, Mt6855, Mt6873, Mt6875, Mt6875t, Mt6877, Mt6878, Mt6879, Mt6883, Mt6885, Mt6886, Mt6889, Mt6891, Mt6893, Mt6895, Mt6895t, Mt6896, Mt6897, Mt6983, Mt6985, Mt6989, Mt8666, Mt8666a, Mt8667, Mt8673, Mt8675, Mt8765, Mt8766, Mt8766z, Mt8768, Mt8768a, Mt8768b, Mt8768t, Mt8768z, Mt8781, Mt8786, Mt8788, Mt8788t, Mt8788x, Mt8788z, Mt8791, Mt8791t, Mt8797, Mt8798",9.8,CRITICAL,0.0036700000055134296,false,,false,false,false,,,false,false,,2023-10-02T03:15:00.000Z,0 CVE-2022-26446,https://securityvulnerability.io/vulnerability/CVE-2022-26446,Remote Denial of Service Vulnerability in Modem 4G RRC by MediaTek,"A vulnerability exists in the Modem 4G RRC due to insufficient input validation, which may result in a system crash. This vulnerability allows an attacker to exploit the system remotely via improperly concatenated SIB12 (CMAS message) messages, causing a denial of service without requiring any user interaction. The issue can be addressed through the application of specific patches, such as Patch ID: MOLY00867883.",MediaTek,"Mt2731, Mt2735, Mt6297, Mt6725, Mt6739, Mt6761, Mt6762, Mt6762d, Mt6762m, Mt6763, Mt6765, Mt6765t, Mt6767, Mt6768, Mt6769, Mt6769t, Mt6769z, Mt6771, Mt6779, Mt6781, Mt6783, Mt6785, Mt6785t, Mt6789, Mt6833, Mt6853, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6880, Mt6883, Mt6885, Mt6889, Mt6890, Mt6891, Mt6893, Mt6895, Mt6983, Mt8385, Mt8666, Mt8667, Mt8675, Mt8765, Mt8766, Mt8768, Mt8786, Mt8788, Mt8789, Mt8791, Mt8797",7.5,HIGH,0.0015899999998509884,false,,false,false,false,,,false,false,,2022-11-08T00:00:00.000Z,0 CVE-2022-20083,https://securityvulnerability.io/vulnerability/CVE-2022-20083,Out of Bounds Write Vulnerability in MediaTek Modem 2G/3G Products,"An out of bounds write vulnerability exists in MediaTek's Modem 2G/3G CC, originating from a missing bounds check. This issue could be exploited by an attacker to execute arbitrary code remotely while decoding combined FACILITY data. Notably, this vulnerability does not require any additional execution privileges or user interaction, making it particularly concerning for device security. Affected products should be updated promptly to mitigate potential risks associated with this vulnerability.",MediaTek,"Mt2731, Mt2735, Mt6297, Mt6725, Mt6735, Mt6737, Mt6739, Mt6750, Mt6750s, Mt6755, Mt6757, Mt6757p, Mt6758, Mt6761, Mt6762, Mt6762d, Mt6762m, Mt6763, Mt6765, Mt6765t, Mt6767, Mt6768, Mt6769, Mt6769t, Mt6769z, Mt6771, Mt6775, Mt6779, Mt6781, Mt6783, Mt6785, Mt6785t, Mt6789, Mt6797, Mt6799, Mt6833, Mt6853, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6880, Mt6883, Mt6885, Mt6889, Mt6890, Mt6891, Mt6893, Mt6895, Mt6983, Mt8666, Mt8667, Mt8675, Mt8735a, Mt8735b, Mt8765, Mt8766, Mt8768, Mt8771, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8797",9.8,CRITICAL,0.004970000125467777,false,,false,false,false,,,false,false,,2022-07-06T13:05:39.000Z,0 CVE-2022-21744,https://securityvulnerability.io/vulnerability/CVE-2022-21744,Out of Bounds Write Vulnerability in MediaTek Modem 2G RR,"An out of bounds write vulnerability exists in the MediaTek Modem 2G RR, caused by a missing bounds check. This flaw may allow an attacker to exploit improper neighbouring cell size when decoding GPRS Packet Neighbour Cell Data (PNCD), which can result in unauthorized remote code execution without the need for user interaction. Affected users are advised to apply the latest patches to mitigate security risks associated with this vulnerability.",MediaTek,"Mt2731, Mt2735, Mt6297, Mt6725, Mt6735, Mt6737, Mt6739, Mt6750, Mt6750s, Mt6755, Mt6757, Mt6757p, Mt6758, Mt6761, Mt6762, Mt6762d, Mt6762m, Mt6763, Mt6765, Mt6765t, Mt6767, Mt6768, Mt6769, Mt6769t, Mt6769z, Mt6771, Mt6775, Mt6779, Mt6781, Mt6783, Mt6785, Mt6785t, Mt6789, Mt6797, Mt6799, Mt6833, Mt6853, Mt6855, Mt6873, Mt6875, Mt6877, Mt6879, Mt6880, Mt6883, Mt6885, Mt6889, Mt6890, Mt6891, Mt6893, Mt6895, Mt6983, Mt8666, Mt8667, Mt8675, Mt8735a, Mt8735b, Mt8765, Mt8766, Mt8768, Mt8771, Mt8781, Mt8786, Mt8788, Mt8789, Mt8791, Mt8797",9.8,CRITICAL,0.004970000125467777,false,,false,false,false,,,false,false,,2022-07-06T13:05:13.000Z,0