Vulnerabilities > Mediatek

DATE CVE VULNERABILITY TITLE RISK
2023-05-15 CVE-2023-20673 Type Confusion vulnerability in multiple products
In vcu, there is a possible memory corruption due to type confusion.
local
low complexity
mediatek google CWE-843
6.7
2023-02-06 CVE-2021-31573 Improper Input Validation vulnerability in Mediatek En7528 Firmware and En7580 Firmware
In Config Manager, there is a possible command injection due to improper input validation.
network
low complexity
mediatek CWE-20
critical
9.8
2023-02-06 CVE-2021-31574 Improper Input Validation vulnerability in Mediatek En7528 Firmware and En7580 Firmware
In Config Manager, there is a possible command injection due to improper input validation.
network
low complexity
mediatek CWE-20
critical
9.8
2023-02-06 CVE-2021-31575 Improper Input Validation vulnerability in Mediatek En7528 Firmware and En7580 Firmware
In Config Manager, there is a possible command injection due to improper input validation.
network
low complexity
mediatek CWE-20
critical
9.8
2023-02-06 CVE-2021-31576 Missing Authorization vulnerability in Mediatek En7528 Firmware and En7580 Firmware
In Boa, there is a possible information disclosure due to a missing permission check.
network
low complexity
mediatek CWE-862
7.5
2023-02-06 CVE-2021-31577 Incorrect Authorization vulnerability in Mediatek En7528 Firmware and En7580 Firmware
In Boa, there is a possible escalation of privilege due to a missing permission check.
network
low complexity
mediatek CWE-863
critical
9.8
2023-02-06 CVE-2021-31578 Out-of-bounds Write vulnerability in Mediatek En7528 Firmware and En7580 Firmware
In Boa, there is a possible escalation of privilege due to a stack buffer overflow.
network
low complexity
mediatek CWE-787
critical
9.8
2023-02-06 CVE-2022-32654 Unspecified vulnerability in Mediatek products
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling.
local
low complexity
mediatek
6.7
2023-02-06 CVE-2022-32655 Improper Input Validation vulnerability in Mediatek products
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling.
local
low complexity
mediatek CWE-20
6.7
2023-02-06 CVE-2022-32656 Unspecified vulnerability in Mediatek products
In Wi-Fi driver, there is a possible undefined behavior due to incorrect error handling.
local
low complexity
mediatek
6.7