Vulnerabilidades em Unisoc (Shanghai) Technologies Co., Ltd.

647 resultados
Análise Vexday

Com 647 CVEs catalogadas e nenhuma presença no catálogo KEV da CISA, a Unisoc apresenta taxa de exploração ativa abaixo da média geral do catálogo, o que sugere baixa pressão ofensiva documentada no momento. O tipo de falha mais recorrente é CWE-862 (ausência de verificação de autorização), padrão que, quando explorado, permite acesso não autorizado a recursos ou funcionalidades restritas e merece atenção especial em revisões de código e hardening. A CVE mais relevante no contexto atual é CVE-2025-31715, com escore EPSS de 0,0156, indicando probabilidade de exploração ainda baixa, mas que deve ser monitorada dado seu destaque entre as ameaças ativas. As 6 vulnerabilidades surgidas nos últimos 90 dias e a ausência de PoCs públicas apontam para um perfil de risco moderado, embora a presença de 4 CVEs críticas reforce a necessidade de acompanhamento contínuo das atualizações do fabricante.

CVE-2023-42651In engineermode, there is a possible missing permission check. This could lead to local information disclosure with no additional execution EPSS 0.1%CVE-2023-30924In messaging service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%CVE-2023-42644In dm service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution prEPSS 0.1%CVE-2023-42640In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional executiEPSS 0.1%CVE-2023-33907In Contacts Service, there is a possible missing permission check. This could lead to local information disclosure with no additional executEPSS 0.1%CVE-2023-42636In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional executiEPSS 0.1%CVE-2023-42639In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional executiEPSS 0.1%CVE-2023-33910In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional executiEPSS 0.1%CVE-2023-42634In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional executiEPSS 0.1%CVE-2023-30925In opm service, there is a missing permission check. This could lead to local information disclosure with no additional execution privilegesEPSS 0.1%CVE-2023-33881In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%CVE-2023-33911In vowifi service, there is a possible missing permission check.This could lead to local information disclosure with no additional executionEPSS 0.1%CVE-2023-30921In messaging service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%CVE-2023-30913In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%CVE-2023-30922In messaging service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%CVE-2023-42635In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional executiEPSS 0.1%CVE-2023-30937In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%CVE-2023-42637In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional executiEPSS 0.1%CVE-2023-42646In Ifaa service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution EPSS 0.1%CVE-2023-30933In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privEPSS 0.1%