Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2023-05-03 CVE-2023-2069 Exposure of Resource to Wrong Sphere vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 10.0 before 12.9.8, all versions starting from 12.10 before 12.10.7, all versions starting from 13.0 before 13.0.1.
network
low complexity
gitlab CWE-668
4.3
2023-04-27 CVE-2023-26243 Exposure of Resource to Wrong Sphere vulnerability in Hyundai Gen5W L In-Vehicle Infotainment System Firmware 5W.Xxx.S5Wl.001.001.221129/Aeepeeur.S5Wl001.001.211214
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR.S5W_L001.001.211214.
local
low complexity
hyundai CWE-668
7.8
2023-04-18 CVE-2023-22307 Exposure of Resource to Wrong Sphere vulnerability in Tribe29 Checkmk Appliance Firmware
Sensitive data exposure in Webconf in Tribe29 Checkmk Appliance before 1.6.4 allows local attacker to retrieve passwords via reading log files.
local
low complexity
tribe29 CWE-668
5.5
2023-04-18 CVE-2023-27976 Exposure of Resource to Wrong Sphere vulnerability in Schneider-Electric Ecostruxure Control Expert 15.1
A CWE-668: Exposure of Resource to Wrong Sphere vulnerability exists that could cause remote code execution when a valid user visits a malicious link provided through the web endpoints.
network
low complexity
schneider-electric CWE-668
8.8
2023-04-15 CVE-2021-30153 Exposure of Resource to Wrong Sphere vulnerability in Mediawiki
An issue was discovered in the VisualEditor extension in MediaWiki before 1.31.13, and 1.32.x through 1.35.x before 1.35.2.
network
low complexity
mediawiki CWE-668
4.3
2023-04-15 CVE-2023-29203 Exposure of Resource to Wrong Sphere vulnerability in Xwiki
XWiki Commons are technical libraries common to several other top level XWiki projects.
network
low complexity
xwiki CWE-668
5.3
2023-04-15 CVE-2023-29208 Exposure of Resource to Wrong Sphere vulnerability in Xwiki
XWiki Commons are technical libraries common to several other top level XWiki projects.
network
low complexity
xwiki CWE-668
7.5
2023-04-13 CVE-2023-25954 Exposure of Resource to Wrong Sphere vulnerability in multiple products
KYOCERA Mobile Print' v3.2.0.230119 and earlier, 'UTAX/TA MobilePrint' v3.2.0.230119 and earlier, and 'Olivetti Mobile Print' v3.2.0.230119 and earlier are vulnerable to improper intent handling.
local
low complexity
kyocera triumph-adler olivetti CWE-668
5.5
2023-04-11 CVE-2023-25409 Exposure of Resource to Wrong Sphere vulnerability in Aten Pe8108 Firmware 2.4.232
Aten PE8108 2.4.232 is vulnerable to Incorrect Access Control.
network
low complexity
aten CWE-668
8.1
2023-04-11 CVE-2022-47338 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0
In telecom service, there is a missing permission check.
local
low complexity
google CWE-668
7.1