Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2023-06-08 CVE-2023-29403 Exposure of Resource to Wrong Sphere vulnerability in multiple products
On Unix platforms, the Go runtime does not behave differently when a binary is run with the setuid/setgid bits.
local
low complexity
golang fedoraproject CWE-668
7.8
2023-06-07 CVE-2023-33510 Exposure of Resource to Wrong Sphere vulnerability in Jeecg P3 BIZ Chat Project Jeecg P3 BIZ Chat 1.0.5
Jeecg P3 Biz Chat 1.0.5 allows remote attackers to read arbitrary files through specific parameters.
network
low complexity
jeecg-p3-biz-chat-project CWE-668
7.5
2023-06-06 CVE-2023-32550 Exposure of Resource to Wrong Sphere vulnerability in Canonical Landscape
Landscape's server-status page exposed sensitive system information.
network
low complexity
canonical CWE-668
8.2
2023-06-06 CVE-2022-40523 Exposure of Resource to Wrong Sphere vulnerability in Qualcomm products
Information disclosure in Kernel due to indirect branch misprediction.
local
low complexity
qualcomm CWE-668
5.5
2023-06-06 CVE-2022-40525 Exposure of Resource to Wrong Sphere vulnerability in Qualcomm products
Information disclosure in Linux Networking Firmware due to unauthorized information leak during side channel analysis.
local
low complexity
qualcomm CWE-668
5.5
2023-06-05 CVE-2023-33518 Exposure of Resource to Wrong Sphere vulnerability in Emoncms 11.0
emoncms v11 and later was discovered to contain an information disclosure vulnerability which allows attackers to obtain the web directory path and other information leaked by the server via a crafted web request.
network
low complexity
emoncms CWE-668
5.3
2023-06-02 CVE-2023-25750 Exposure of Resource to Wrong Sphere vulnerability in Mozilla Firefox
Under certain circumstances, a ServiceWorker's offline cache may have leaked to the file system when using private browsing mode.
network
low complexity
mozilla CWE-668
4.3
2023-06-02 CVE-2023-29538 Exposure of Resource to Wrong Sphere vulnerability in Mozilla Firefox and Focus
Under specific circumstances a WebExtension may have received a <code>jar:file:///</code> URI instead of a <code>moz-extension:///</code> URI during a load request.
network
low complexity
mozilla CWE-668
4.3
2023-06-02 CVE-2023-2062 Exposure of Resource to Wrong Sphere vulnerability in Mitsubishielectric products
Missing Password Field Masking vulnerability in Mitsubishi Electric Corporation EtherNet/IP configuration tools SW1DNN-EIPCT-BD and SW1DNN-EIPCTFX5-BD allows a remote unauthenticated attacker to know the password for MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP.
local
low complexity
mitsubishielectric CWE-668
6.2
2023-05-31 CVE-2023-28344 Exposure of Resource to Wrong Sphere vulnerability in Faronics Insight 10.0.19045
An issue was discovered in Faronics Insight 10.0.19045 on Windows.
low complexity
faronics CWE-668
7.1