Vulnerabilities > Tencent > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-31 CVE-2023-52286 Unspecified vulnerability in Tencent Distributed SQL 1.8.5
Tencent tdsqlpcloud through 1.8.5 allows unauthenticated remote attackers to discover database credentials via an index.php/api/install/get_db_info request, a related issue to CVE-2023-42387.
network
low complexity
tencent
7.5
2023-10-12 CVE-2023-40829 Incorrect Authorization vulnerability in Tencent Enterprise Wechat Privatization 2.5.0/2.6.930000
There is an interface unauthorized access vulnerability in the background of Tencent Enterprise Wechat Privatization 2.5.x and 2.6.930000.
network
low complexity
tencent CWE-863
7.5
2023-06-01 CVE-2023-34312 Release of Invalid Pointer or Reference vulnerability in Tencent QQ and TIM
In Tencent QQ through 9.7.8.29039 and TIM through 3.4.7.22084, QQProtect.exe and QQProtectEngine.dll do not validate pointers from inter-process communication, which leads to a write-what-where condition.
local
low complexity
tencent CWE-763
7.8
2022-05-03 CVE-2021-27439 Integer Overflow or Wraparound vulnerability in Tencent Tencentos-Tiny 3.1.0
TencentOS-tiny version 3.1.0 is vulnerable to integer wrap-around in function 'tos_mmheap_alloc incorrect calculation of effective memory allocation size.
network
low complexity
tencent CWE-190
7.5
2020-04-09 CVE-2020-10551 Improper Privilege Management vulnerability in Tencent Qqbrowser
QQBrowser before 10.5.3870.400 installs a Windows service TsService.exe.
local
low complexity
tencent CWE-269
7.2