Mt6297
Vendor:
First CVE: Jan 4, 2022 · Active for 4 years
13
Total CVEs
More Total CVEs than 91% of tracked products
4.3
Avg CVEs / Year
Higher CVE frequency than 86% of tracked products
8.0
Avg CVSS
Higher Avg CVSS than 68% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Mt6297 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 4, 2022
4 years ago
Most Recent CVE
Apr 1, 2024
846 days ago
CVE Severity & Scoring
Mt629713 CVEs
85%
15%
All CVEs352,713 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network13 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low13 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None13 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low1 (7.7%)
High0 (0.0%)
None12 (92.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (13 CVEs).
13 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-21744CRITICAL In Modem 2G RR, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding GPRS Packet Neighbour Cell Data (PNCD) | Jul 6, 2022 | 9.8 | 32 | NO | NO |
CVE-2022-20083CRITICAL In Modem 2G/3G CC, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding combined FACILITY with no additiona | Jul 6, 2022 | 9.8 | 32 | NO | NO |
CVE-2024-20039HIGH In modem protocol, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. U | Apr 1, 2024 | 8.8 | 25 | NO | NO |
CVE-2023-32846HIGH In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional | Dec 4, 2023 | 7.5 | 24 | NO | NO |
CVE-2022-26446HIGH In Modem 4G RRC, there is a possible system crash due to improper input validation. This could lead to remote denial of service, when concatenating improper SIB12 (CMAS message), w | Nov 8, 2022 | 7.5 | 24 | NO | NO |
CVE-2021-40148HIGH In Modem EMM, there is a possible information disclosure due to a missing data encryption. This could lead to remote information disclosure with no additional execution privileges | Jan 4, 2022 | 7.5 | 24 | NO | NO |
CVE-2023-32845HIGH In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional | Dec 4, 2023 | 7.5 | 23 | NO | NO |
CVE-2023-32843HIGH In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional | Dec 4, 2023 | 7.5 | 23 | NO | NO |
CVE-2023-32842HIGH In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional | Dec 4, 2023 | 7.5 | 22 | NO | NO |
CVE-2023-32841HIGH In 5G Modem, there is a possible system crash due to improper error handling. This could lead to remote denial of service when receiving malformed RRC messages, with no additional | Dec 4, 2023 | 7.5 | 22 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (13 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (13 CVEs).
Media Mentions
Signals from CVEs in this product scope (13 CVEs).
Top CNAs Publishing CVEs For Mt6297
Top CWEs
Versions
No cataloged versions.