Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2023-05-22 CVE-2023-31103 Exposure of Resource to Wrong Sphere vulnerability in Apache Inlong 1.4.0/1.5.0/1.6.0
Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.6.0.  Attackers can change the immutable name and type of cluster of InLong. Users are advised to upgrade to Apache InLong's 1.7.0 or cherry-pick https://github.com/apache/inlong/pull/7891 https://github.com/apache/inlong/pull/7891 to solve it.
network
low complexity
apache CWE-668
7.5
2023-05-22 CVE-2023-33293 Exposure of Resource to Wrong Sphere vulnerability in Kaiostech Kaios 3.0/3.1
An issue was discovered in KaiOS 3.0 and 3.1.
network
low complexity
kaiostech CWE-668
5.3
2023-05-22 CVE-2023-31206 Exposure of Resource to Wrong Sphere vulnerability in Apache Inlong 1.4.0/1.5.0/1.6.0
Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.6.0. Attackers can change the immutable name and type of nodes of InLong.
network
low complexity
apache CWE-668
7.5
2023-05-18 CVE-2023-2025 Exposure of Resource to Wrong Sphere vulnerability in Johnsoncontrols Openblue Enterprise Manager Data Collector
OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 may expose sensitive information to an unauthorized user under certain circumstances.
network
low complexity
johnsoncontrols CWE-668
6.5
2023-05-15 CVE-2023-23448 Exposure of Resource to Wrong Sphere vulnerability in Sick products
Inclusion of Sensitive Information in Source Code in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows a remote attacker to gain information about valid usernames via analysis of source code.
network
low complexity
sick CWE-668
5.3
2023-05-12 CVE-2023-29820 Exposure of Resource to Wrong Sphere vulnerability in Webroot Secureanywhere
An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to access sensitive information via the EXE installer.
local
low complexity
webroot CWE-668
5.5
2023-05-10 CVE-2023-27564 Exposure of Resource to Wrong Sphere vulnerability in N8N 0.218.0
The n8n package 0.218.0 for Node.js allows Information Disclosure.
network
low complexity
n8n CWE-668
7.5
2023-05-10 CVE-2022-38087 Exposure of Resource to Wrong Sphere vulnerability in Intel products
Exposure of resource to wrong sphere in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-668
5.5
2023-05-10 CVE-2022-40210 Exposure of Resource to Wrong Sphere vulnerability in Intel Data Center Manager
Exposure of data element to wrong session in the Intel DCM software before version 5.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-668
7.8
2023-05-03 CVE-2023-0485 Exposure of Resource to Wrong Sphere vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 13.11 before 15.8.5, all versions starting from 15.9 before 15.9.4, all versions starting from 15.10 before 15.10.1.
network
low complexity
gitlab CWE-668
6.5