Vulnerabilities (CVE)

Filtered by NVD-CWE-noinfo
Total 36333 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-29742 1 Bestweather Project 1 Bestweather 2026-06-17 N/A 7.8 HIGH
An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a code execution attack by manipulating the database.
CVE-2023-29741 1 Bestweather Project 1 Bestweather 2026-06-17 N/A 9.8 CRITICAL
An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause an escalation of privileges attack by manipulating the database.
CVE-2023-29740 1 Amdroidapp 1 Alarm Clock For Heavy Sleepers 2026-06-17 N/A 7.5 HIGH
An issue found in Alarm Clock for Heavy Sleepers v.5.3.2 for Android allows unauthorized apps to cause a denial of service attack by manipulating the database.
CVE-2023-29739 1 Amdroidapp 1 Alarm Clock For Heavy Sleepers 2026-06-17 N/A 9.8 CRITICAL
An issue found in Alarm Clock for Heavy Sleepers v.5.3.2 for Android allows unauthorized apps to cause escalation of privilege attacks by manipulating the component.
CVE-2023-29738 1 Wavekeyboard 1 Wave Animated Keyboard Emoji 2026-06-17 N/A 7.8 HIGH
An issue found in Wave Animated Keyboard Emoji v.1.70.7 for Android allows a local attacker to cause code execution and escalation of Privileges via the database files.
CVE-2023-29737 1 Wavekeyboard 1 Wave Animated Keyboard Emoji 2026-06-17 N/A 5.5 MEDIUM
An issue found in Wave Animated Keyboard Emoji v.1.70.7 for Android allows a local attacker to cause a denial of service via the database files.
CVE-2023-29733 1 Dualspace 1 Lock Master 2026-06-17 N/A 7.8 HIGH
The Lock Master app 2.2.4 for Android allows unauthorized apps to modify the values in its SharedPreference files. These files hold data that affects many app functions. Malicious modifications by unauthorized apps can cause security issues, such as functionality manipulation, resulting in a severe escalation of privilege attack.
CVE-2023-29728 1 Applika 1 Call Blocker 2026-06-17 N/A 9.8 CRITICAL
The Call Blocker application 6.6.3 for Android allows attackers to tamper with feature-related data, resulting in a severe elevation of privilege attack.
CVE-2023-29727 1 Applika 1 Call Blocker 2026-06-17 N/A 9.8 CRITICAL
The Call Blocker application 6.6.3 for Android allows unauthorized applications to use exposed components to delete data stored in its database that is related to user privacy settings and affects the implementation of the normal functionality of the application. An attacker can use this to cause an escalation of privilege attack.
CVE-2023-29723 1 Glitter Unicorn Wallpaper Project 1 Glitter Unicorn Wallpaper 2026-06-17 N/A 7.5 HIGH
The Glitter Unicorn Wallpaper app for Android 7.0 thru 8.0 allows unauthorized applications to actively request permission to insert data into the database that records information about a user's personal preferences and will be loaded into memory to be read and used when the application is opened. By injecting data, the attacker can force the application to load malicious image URLs and display them in the UI. As the amount of data increases, it will eventually cause the application to trigger an OOM error and crash, resulting in a persistent denial of service attack.
CVE-2023-29722 1 Glitter Unicorn Wallpaper Project 1 Glitter Unicorn Wallpaper 2026-06-17 N/A 9.1 CRITICAL
The Glitter Unicorn Wallpaper app for Android 7.0 thru 8.0 allows unauthorized apps to actively request permission to modify data in the database that records information about a user's personal preferences and will be loaded into memory to be read and used when the app is opened. An attacker could tamper with this data to cause an escalation of privilege attack.
CVE-2023-29711 1 Interlink 2 Psg-5124, Psg-5124 Firmware 2026-06-17 N/A 9.8 CRITICAL
An incorrect access control issue was discovered in Interlink PSG-5124 version 1.0.4, allows attackers to execute arbitrary code via crafted GET request.
CVE-2023-29709 1 Wildix 2 Wsg24poe, Wsg24poe Firmware 2026-06-17 N/A 7.5 HIGH
An issue was discovered in /cgi-bin/login_rj.cgi in Wildix WSG24POE version 103SP7D190822, allows attackers to bypass authentication.
CVE-2023-29708 1 Wavlink 1 Wavrouter App 2026-06-17 N/A 7.5 HIGH
An issue was discovered in /cgi-bin/adm.cgi in WavLink WavRouter version RPT70HA1.x, allows attackers to force a factory reset via crafted payload.
CVE-2023-29586 1 Codesector 1 Teracopy 2026-06-17 N/A 5.5 MEDIUM
Code Sector TeraCopy 3.9.7 does not perform proper access validation on the source folder during a copy operation. This leads to Arbitrary File Read by allowing any user to copy any directory in the system to a directory they control. NOTE: the Supplier disputes this because only admin users can copy arbitrary folders, and because the 143984 reference is about a different concern (unrelated to directory copying) that was fixed in 3.5b.
CVE-2023-29581 1 Yasm Project 1 Yasm 2026-06-17 N/A 5.5 MEDIUM
yasm 1.3.0.55.g101bc has a segmentation violation in the function delete_Token at modules/preprocs/nasm/nasm-pp.c. NOTE: although a libyasm application could become unavailable if this were exploited, the vendor's position is that there is no security relevance because there is either supposed to be input validation before data reaches libyasm, or a sandbox in which the application runs.
CVE-2023-29580 1 Yasm Project 1 Yasm 2026-06-17 N/A 5.5 MEDIUM
yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the component yasm_expr_create at /libyasm/expr.c.
CVE-2023-29574 1 Axiosys 1 Bento4 2026-06-17 N/A 5.5 MEDIUM
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp42avc component.
CVE-2023-29571 1 Cesanta 1 Mjs 2026-06-17 N/A 5.5 MEDIUM
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via gc_sweep at src/mjs_gc.c. This vulnerability can lead to a Denial of Service (DoS).
CVE-2023-29570 1 Cesanta 1 Mjs 2026-06-17 N/A 5.5 MEDIUM
Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_ffi_cb_free at src/mjs_ffi.c. This vulnerability can lead to a Denial of Service (DoS).