Vulnerabilidades en Unisoc (Shanghai) Technologies Co., Ltd.

656 resultados
Análisis Vexday

Com 647 CVEs catalogadas e nenhuma presença no catálogo KEV da CISA, a Unisoc apresenta taxa de exploração ativa abaixo da média geral do catálogo, o que sugere baixa pressão ofensiva documentada no momento. O tipo de falha mais recorrente é CWE-862 (ausência de verificação de autorização), padrão que, quando explorado, permite acesso não autorizado a recursos ou funcionalidades restritas e merece atenção especial em revisões de código e hardening. A CVE mais relevante no contexto atual é CVE-2025-31715, com escore EPSS de 0,0156, indicando probabilidade de exploração ainda baixa, mas que deve ser monitorada dado seu destaque entre as ameaças ativas. As 6 vulnerabilidades surgidas nos últimos 90 dias e a ausência de PoCs públicas apontam para um perfil de risco moderado, embora a presença de 4 CVEs críticas reforce a necessidade de acompanhamento contínuo das atualizações do fabricante.

CVE-2022-47345MEDIUMIn engineermode services, there is a missing permission check. This could lead to local denial of service in engineermode services.EPSS 0.1%CVE-2022-47364MEDIUMIn wlan driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service in wlan seEPSS 0.1%CVE-2022-42777HIGHIn power management service, there is a missing permission check. This could lead to set up power management service with no additional execEPSS 0.1%CVE-2022-47368MEDIUMIn wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-47363MEDIUMIn wlan driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service in wlan serEPSS 0.1%CVE-2022-47351In camera driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with SystEPSS 0.1%CVE-2022-47369MEDIUMIn wlan driver, there is a possible missing params check. This could lead to local denial of service in wlan services.EPSS 0.1%CVE-2022-47350In camera driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with SystEPSS 0.1%CVE-2022-42776HIGHIn UscAIEngine service, there is a missing permission check. This could lead to set up UscAIEngine service with no additional execution privEPSS 0.1%CVE-2022-48244HIGHIn audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%CVE-2022-48250HIGHIn audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%CVE-2022-48248HIGHIn audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%CVE-2022-44433HIGHIn phoneEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executEPSS 0.1%CVE-2022-48249HIGHIn audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%CVE-2022-48247HIGHIn audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%CVE-2022-47487MEDIUMIn thermal service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service local EPSS 0.1%CVE-2022-48388HIGHIn powerEx service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executEPSS 0.1%CVE-2022-42778HIGHIn windows manager service, there is a missing permission check. This could lead to set up windows manager service with no additional executEPSS 0.1%CVE-2022-48245HIGHIn audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%CVE-2022-48369HIGHIn audio service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional executioEPSS 0.1%