Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2023-05-23 CVE-2023-2703 Exposure of Resource to Wrong Sphere vulnerability in Finexmedia Competition Management System
Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Finex Media Competition Management System allows Retrieve Embedded Sensitive Data, Collect Data as Provided by Users.This issue affects Competition Management System: before 23.07.
network
low complexity
finexmedia CWE-668
7.5
2023-05-22 CVE-2023-31103 Exposure of Resource to Wrong Sphere vulnerability in Apache Inlong 1.4.0/1.5.0/1.6.0
Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.6.0.  Attackers can change the immutable name and type of cluster of InLong. Users are advised to upgrade to Apache InLong's 1.7.0 or cherry-pick https://github.com/apache/inlong/pull/7891 https://github.com/apache/inlong/pull/7891 to solve it.
network
low complexity
apache CWE-668
7.5
2023-05-22 CVE-2023-33293 Exposure of Resource to Wrong Sphere vulnerability in Kaiostech Kaios 3.0/3.1
An issue was discovered in KaiOS 3.0 and 3.1.
network
low complexity
kaiostech CWE-668
5.3
2023-05-22 CVE-2023-31206 Exposure of Resource to Wrong Sphere vulnerability in Apache Inlong 1.4.0/1.5.0/1.6.0
Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.6.0. Attackers can change the immutable name and type of nodes of InLong.
network
low complexity
apache CWE-668
7.5
2023-05-18 CVE-2023-2025 Exposure of Resource to Wrong Sphere vulnerability in Johnsoncontrols Openblue Enterprise Manager Data Collector
OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 may expose sensitive information to an unauthorized user under certain circumstances.
network
low complexity
johnsoncontrols CWE-668
6.5
2023-05-15 CVE-2023-23448 Exposure of Resource to Wrong Sphere vulnerability in Sick products
Inclusion of Sensitive Information in Source Code in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows a remote attacker to gain information about valid usernames via analysis of source code.
network
low complexity
sick CWE-668
5.3
2023-05-12 CVE-2023-29820 Exposure of Resource to Wrong Sphere vulnerability in Webroot Secureanywhere
** DISPUTED ** An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer.
local
low complexity
webroot CWE-668
5.5
2023-05-10 CVE-2023-27564 Exposure of Resource to Wrong Sphere vulnerability in N8N 0.218.0
The n8n package 0.218.0 for Node.js allows Information Disclosure.
network
low complexity
n8n CWE-668
7.5
2023-05-10 CVE-2022-38087 Exposure of Resource to Wrong Sphere vulnerability in Intel products
Exposure of resource to wrong sphere in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-668
5.5
2023-05-10 CVE-2022-40210 Exposure of Resource to Wrong Sphere vulnerability in Intel Data Center Manager 3.6.2/5.0
Exposure of data element to wrong session in the Intel DCM software before version 5.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-668
7.8