Weaknesses of type CWE-276
908 resultsCVE-2018-9431HIGHIn OSUInfo of OSUInfo.java, there is a possible escalation of privilege due to improper input validation. This could lead to local escalatioEPSS 0.1%CVE-2023-21104MEDIUMIn applySyncTransaction of WindowOrganizer.java, a missing permission check could lead to local information disclosure with no additional exEPSS 0.1%CVE-2025-31655MEDIUMIncorrect default permissions for some Intel(R) Battery Life Diagnostic Tool within Ring 3: User Applications may allow an escalation of priEPSS 0.1%CVE-2024-43769HIGHIn isPackageDeviceAdmin of PackageManagerService.java, there is a possible edge case which could prevent the uninstallation of CloudDpc due EPSS 0.1%CVE-2025-36522MEDIUMIncorrect default permissions for some Intel(R) Chipset Software before version 10.1.20266.8668 or later. within Ring 3: User Applications mEPSS 0.1%CVE-2024-40654HIGHIn multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege withEPSS 0.1%CVE-2024-47012HIGHIn mm_GetMobileIdIndexForNsUpdate of mm_GmmPduCodec.c, there is a possible out of bounds write due to an incorrect bounds check. This could EPSS 0.1%CVE-2024-40655HIGHIn bindAndGetCallIdentification of CallScreeningServiceHelper.java, there is a possible way to maintain a while-in-use permission in the bacEPSS 0.1%CVE-2024-34730HIGHIn multiple locations, there is a possible bypass of user consent to enabling new Bluetooth HIDs due to a logic error in the code. This coulEPSS 0.1%CVE-2024-49737HIGHIn applyTaskFragmentOperation of WindowOrganizerController.java, there is a possible way to launch arbitrary activities as the system UID duEPSS 0.1%CVE-2018-9432HIGHIn createPhonebookDialogView and createMapDialogView of BluetoothPermissionActivity.java, there is a possible permissions bypass. This couldEPSS 0.1%CVE-2024-53835HIGHthere is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with no additional execuEPSS 0.1%CVE-2024-11624HIGHthere is a possible to add apps to bypass VPN due to Undeclared Permission . This could lead to local escalation of privilege with no additiEPSS 0.1%CVE-2024-53840HIGHthere is a possible biometric bypass due to an unusual root cause. This could lead to local escalation of privilege with no additional execuEPSS 0.1%CVE-2024-49744HIGHIn checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to bypass parcel mismatch mitigation due to unsaEPSS 0.1%CVE-2024-47013HIGHIn pmucal_rae_handle_seq_int of flexpmu_cal_rae.c, there is a possible arbitrary write due to uninitialized data. This could lead to local eEPSS 0.1%CVE-2017-13314HIGHIn setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings bypass due to a missing permission check. EPSS 0.1%CVE-2024-43765HIGHIn multiple locations, there is a possible way to obtain access to a folder due to a tapjacking/overlay attack. This could lead to local escEPSS 0.1%CVE-2017-13310HIGHIn createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead tEPSS 0.1%CVE-2024-47016HIGHthere is a possible privilege escalation due to an insecure default value. This could lead to local escalation of privilege with no additionEPSS 0.1%