Записи HTC
16 опубликованных записей вендора htc.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-255 Credentials Management Errors3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-269 Improper Privilege Management1
- CWE-295 Improper Certificate Validation1
- CWE-427 Uncontrolled Search Path Element1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
16 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2024-33267Эксплойта нет | SQL Injection vulnerability in Hero hfheropayment v.1.2.5 and before allows an attacker to escalate privileges via the HfHeropaymentGatewayBCWE-89 | Критическая9,8 | — | 0,5 % | 30 апр. 2024 г. |
35Наблюдать | CVE-2018-1170Эксплойта нет | This vulnerability allows adjacent attackers to inject arbitrary Controller Area Network messages on vulnerable installations of Volkswagen volkswagen · customer-link · CWE-693 | Высокая8,8 | — | 0,8 % | 1 мар. 2018 г. |
32Наблюдать | CVE-2007-3362Эксплойта нет | ageet AGEphone before 1.6.2, running on Windows Mobile 5 on the HTC HyTN Pocket PC device, allows remote attackers to (1) cause a denial of htc · hytn | Высокая7,8 | — | 2,0 % | 22 июн. 2007 г. |
31Наблюдать | CVE-2019-12177Эксплойта нет | Privilege escalation due to insecure directory permissions affecting ViveportDesktopService in HTC VIVEPORT before 1.0.0.36 allows local atthtc · viveport · CWE-427 | Высокая7,8 | — | 1,4 % | 3 июн. 2019 г. |
31Наблюдать | CVE-2019-12176Эксплойта нет | Privilege escalation in the "HTC Account Service" and "ViveportDesktopService" in HTC VIVEPORT before 1.0.0.36 allows local attackers to eschtc · viveport · CWE-269 | Высокая7,8 | — | 0,3 % | 3 июн. 2019 г. |
30Наблюдать | CVE-2008-4295Proof of concept | Microsoft Windows Mobile 6.0 on HTC Wiza 200 and HTC MDA 8125 devices does not properly handle the first attempt to establish a Bluetooth comicrosoft · windows mobile · CWE-20 | Средняя5,4 | — | 30,1 % | 27 сент. 2008 г. |
30Наблюдать | CVE-2013-4622Эксплойта нет | The 3G Mobile Hotspot feature on the HTC Droid Incredible has a default WPA2 PSK passphrase of 1234567890, which makes it easier for remote htc · droid incredible · CWE-255 | Высокая7,5 | — | 1,3 % | 19 июн. 2013 г. |
29Наблюдать | CVE-2008-6775Proof of concept | HTC Touch Pro and HTC Touch Cruise vCard allows remote attackers to cause denial of service (CPU consumption, SMS consumption, and connectivhtc · touch cruise | Высокая7,1 | — | 2,5 % | 1 мая 2009 г. |
29Наблюдать | CVE-2012-2980Эксплойта нет | The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC Chahtc · chacha · CWE-255 | Высокая7,1 | — | 1,8 % | 21 авг. 2012 г. |
26Наблюдать | CVE-2012-2217Эксплойта нет | The HTC IQRD service for Android on the HTC EVO 4G before 4.67.651.3, EVO Design 4G before 2.12.651.5, Shift 4G before 2.77.651.3, EVO 3D behtc · evo 4g software · CWE-264 | Средняя6,4 | — | 2,0 % | 1 мая 2012 г. |
23Наблюдать | CVE-2013-10001Эксплойта нет | HTC One/Sense Mail Client certificate validationhtc · mail · CWE-295 | Средняя5,9 | — | 0,6 % | 17 мая 2022 г. |
20Наблюдать | CVE-2010-1730Эксплойта нет | Dolphin Browser 2.5.0 on the HTC Hero allows remote attackers to cause a denial of service (application crash) via JavaScript that writes <mdolphin · dolphin browser · CWE-119 | Средняя5,0 | — | 1,2 % | 6 мая 2010 г. |
17Наблюдать | CVE-2010-1731Эксплойта нет | Google Chrome on the HTC Hero allows remote attackers to cause a denial of service (application crash) via JavaScript that writes <marquee> google · chrome | Средняя4,3 | — | 0,8 % | 6 мая 2010 г. |
10Наблюдать | CVE-2011-4872Эксплойта нет | Multiple HTC Android devices including Desire HD FRG83D and GRI40, Glacier FRG83, Droid Incredible FRF91, Thunderbolt 4G FRG83D, Sensation Zhtc · desire hd · CWE-200 | Низкая2,6 | — | 1,3 % | 5 февр. 2012 г. |
10Наблюдать | CVE-2011-3975Эксплойта нет | A certain HTC update for Android 2.3.4 build GRJ22, when the Sense interface is used on the HTC EVO 3D, EVO 4G, ThunderBolt, and unspecifiedhtc · evo 3d · CWE-200 | Низкая2,6 | — | 1,0 % | 3 окт. 2011 г. |
9Наблюдать | CVE-2008-4540Эксплойта нет | Windows Mobile 6 on the HTC Hermes device makes WLAN passwords available to an auto-completion mechanism for the password input field, whichhtc · hermes · CWE-255 | Низкая2,1 | — | 2,0 % | 13 окт. 2008 г. |
- CVE-2024-3326739Наблюдать
SQL Injection vulnerability in Hero hfheropayment v.1.2.5 and before allows an attacker to escalate privileges via the HfHeropaymentGatewayB
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %30 апр. 2024 г.
- CVE-2018-117035Наблюдать
This vulnerability allows adjacent attackers to inject arbitrary Controller Area Network messages on vulnerable installations of Volkswagen
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %volkswagen · customer-link1 мар. 2018 г.
- CVE-2007-336232Наблюдать
ageet AGEphone before 1.6.2, running on Windows Mobile 5 on the HTC HyTN Pocket PC device, allows remote attackers to (1) cause a denial of
ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %htc · hytn22 июн. 2007 г.
- CVE-2019-1217731Наблюдать
Privilege escalation due to insecure directory permissions affecting ViveportDesktopService in HTC VIVEPORT before 1.0.0.36 allows local att
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %htc · viveport3 июн. 2019 г.
- CVE-2019-1217631Наблюдать
Privilege escalation in the "HTC Account Service" and "ViveportDesktopService" in HTC VIVEPORT before 1.0.0.36 allows local attackers to esc
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %htc · viveport3 июн. 2019 г.
- CVE-2008-429530Наблюдать
Microsoft Windows Mobile 6.0 on HTC Wiza 200 and HTC MDA 8125 devices does not properly handle the first attempt to establish a Bluetooth co
СредняяCVSS 5,4Proof of conceptEPSS 30 %microsoft · windows mobile27 сент. 2008 г.
- CVE-2013-462230Наблюдать
The 3G Mobile Hotspot feature on the HTC Droid Incredible has a default WPA2 PSK passphrase of 1234567890, which makes it easier for remote
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %htc · droid incredible19 июн. 2013 г.
- CVE-2008-677529Наблюдать
HTC Touch Pro and HTC Touch Cruise vCard allows remote attackers to cause denial of service (CPU consumption, SMS consumption, and connectiv
ВысокаяCVSS 7,1Proof of conceptEPSS 3 %htc · touch cruise1 мая 2009 г.
- CVE-2012-298029Наблюдать
The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC Cha
ВысокаяCVSS 7,1Эксплойта нетEPSS 2 %htc · chacha21 авг. 2012 г.
- CVE-2012-221726Наблюдать
The HTC IQRD service for Android on the HTC EVO 4G before 4.67.651.3, EVO Design 4G before 2.12.651.5, Shift 4G before 2.77.651.3, EVO 3D be
СредняяCVSS 6,4Эксплойта нетEPSS 2 %htc · evo 4g software1 мая 2012 г.
- CVE-2013-1000123Наблюдать
HTC One/Sense Mail Client certificate validation
СредняяCVSS 5,9Эксплойта нетEPSS 1 %htc · mail17 мая 2022 г.
- CVE-2010-173020Наблюдать
Dolphin Browser 2.5.0 on the HTC Hero allows remote attackers to cause a denial of service (application crash) via JavaScript that writes <m
СредняяCVSS 5,0Эксплойта нетEPSS 1 %dolphin · dolphin browser6 мая 2010 г.
- CVE-2010-173117Наблюдать
Google Chrome on the HTC Hero allows remote attackers to cause a denial of service (application crash) via JavaScript that writes <marquee>
СредняяCVSS 4,3Эксплойта нетEPSS 1 %google · chrome6 мая 2010 г.
- CVE-2011-487210Наблюдать
Multiple HTC Android devices including Desire HD FRG83D and GRI40, Glacier FRG83, Droid Incredible FRF91, Thunderbolt 4G FRG83D, Sensation Z
НизкаяCVSS 2,6Эксплойта нетEPSS 1 %htc · desire hd5 февр. 2012 г.
- CVE-2011-397510Наблюдать
A certain HTC update for Android 2.3.4 build GRJ22, when the Sense interface is used on the HTC EVO 3D, EVO 4G, ThunderBolt, and unspecified
НизкаяCVSS 2,6Эксплойта нетEPSS 1 %htc · evo 3d3 окт. 2011 г.
- CVE-2008-45409Наблюдать
Windows Mobile 6 on the HTC Hermes device makes WLAN passwords available to an auto-completion mechanism for the password input field, which
НизкаяCVSS 2,1Эксплойта нетEPSS 2 %htc · hermes13 окт. 2008 г.