NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-36922 In bigo_map of bigo_iommu.c, there is a possible information disclosure due to a use after free. This could lead to local escalation of privilege in ... 2025-12-11 6.7 LOCAL MEDIUM NVD
CVE-2025-36921 In ProtocolPsUnthrottleApn() of protocolpsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local ... 2025-12-11 5.5 LOCAL MEDIUM NVD
CVE-2025-36919 In aocc_read of aoc_channel_dev.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege with no a... 2025-12-11 7.8 LOCAL HIGH NVD
CVE-2025-36918 In aoc_service_read_message of aoc_ipc_core.c, there is a possible out of bounds read due to improper input validation. This could lead to local escal... 2025-12-11 7.8 LOCAL HIGH NVD
CVE-2025-36917 In SwDcpItg of up_L2commonPdcpSecurity.cpp, there is a possible denial of service due to an incorrect bounds check. This could lead to remote denial o... 2025-12-11 6.5 NETWORK MEDIUM NVD
CVE-2025-36916 In PrepareWorkloadBuffers of gxp_main_actor.cc, there is a possible double fetch due to a race condition. This could lead to local escalation of privi... 2025-12-11 7.0 LOCAL HIGH NVD
CVE-2025-36912 In cellular modem, there is a possible denial of service due to a logic error in the code. This could lead to remote denial of service with no additio... 2025-12-11 6.5 NETWORK MEDIUM NVD
CVE-2025-36889 In onCreateTasks of CameraActivity.java, there is a possible permission bypass due to a confused deputy. This could lead to local information disclosu... 2025-12-11 5.5 LOCAL MEDIUM NVD
CVE-2025-14536 A security flaw has been discovered in code-projects Class and Exam Timetable Management 1.0. Affected by this vulnerability is an unknown functionali... 2025-12-11 7.3 NETWORK HIGH NVD
CVE-2025-14535 A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. The ... 2025-12-11 9.8 NETWORK CRITICAL NVD
CVE-2025-13481 IBM Aspera Orchestrator 4.0.0 through 4.1.0 could allow an authenticated user to execute arbitrary commands with elevated privileges on the system due... 2025-12-11 8.8 NETWORK HIGH NVD
CVE-2025-13214 IBM Aspera Orchestrator 4.0.0 through 4.1.0 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could... 2025-12-11 7.6 NETWORK HIGH NVD
CVE-2025-13211 IBM Aspera Orchestrator 4.0.0 through 4.1.0 could allow an authenticated user to cause a denial of service in the email service due to improper contro... 2025-12-11 5.3 NETWORK MEDIUM NVD
CVE-2025-13148 IBM Aspera Orchestrator 4.0.0 through 4.1.0 could allow could an authenticated user to change the password of another user without prior knowledge of ... 2025-12-11 8.1 NETWORK HIGH NVD
CVE-2024-42197 HCL Workload Scheduler stores user credentials in plain text which can be read by a local user. 2025-12-11 5.5 LOCAL MEDIUM NVD