Sd7c Firmware
Vendor:
First CVE: Jan 21, 2021 · Active for 5 years
138
Total CVEs
More Total CVEs than 99% of tracked products
46.0
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.6
Avg CVSS
Higher Avg CVSS than 64% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Sd7c Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 21, 2021
5 years ago
Most Recent CVE
Sep 5, 2023
1,056 days ago
CVE Severity & Scoring
Sd7c Firmware138 CVEs
16%
74%
10%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local82 (59.4%)
Network46 (33.3%)
Unknown0 (0.0%)
Physical3 (2.2%)
Adjacent Network7 (5.1%)
Attack Complexity
Low136 (98.6%)
High2 (1.4%)
Unknown0 (0.0%)
User Interaction
None137 (99.3%)
Unknown0 (0.0%)
Required1 (0.7%)
Privileges Required
Low77 (55.8%)
High5 (3.6%)
None56 (40.6%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (138 CVEs).
138 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-25748CRITICAL Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer | Oct 19, 2022 | 9.8 | 30 | NO | NO |
CVE-2021-1975CRITICAL Possible heap overflow due to improper length check of domain while parsing the DNS response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IO | Nov 12, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-1980CRITICAL Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron | Oct 20, 2021 | 9.1 | 30 | NO | NO |
CVE-2022-40514CRITICAL Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame. | Feb 12, 2023 | 9.8 | 29 | NO | NO |
CVE-2020-11301HIGH Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect | Sep 8, 2021 | 7.5 | 29 | NO | NO |
CVE-2022-40510CRITICAL Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder. | Aug 8, 2023 | 9.8 | 28 | NO | NO |
CVE-2021-30341CRITICAL Improper buffer size validation of DSM packet received can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronic | Jun 14, 2022 | 9.8 | 28 | NO | NO |
CVE-2021-1942HIGH Improper handling of permissions of a shared memory region can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, S | Apr 1, 2022 | 8.8 | 28 | NO | NO |
CVE-2022-33213HIGH Memory corruption in modem due to buffer overflow while processing a PPP packet | Mar 10, 2023 | 8.8 | 27 | NO | NO |
CVE-2022-22062CRITICAL An out-of-bounds read can occur while parsing a server certificate due to improper length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer | Sep 2, 2022 | 9.1 | 27 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (138 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (138 CVEs).
Media Mentions
Signals from CVEs in this product scope (138 CVEs).
Top CNAs Publishing CVEs For Sd7c Firmware
Top CWEs
Versions
No cataloged versions.