Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2023-02-14 CVE-2023-24523 Exposure of Resource to Wrong Sphere vulnerability in SAP Host Agent 7.21/7.22
An attacker authenticated as a non-admin user with local access to a server port assigned to the SAP Host Agent (Start Service) - versions 7.21, 7.22, can submit a crafted ConfigureOutsideDiscovery request with an operating system command which will be executed with administrator privileges.  The OS command can read or modify any user or system data and can make the system unavailable.
local
low complexity
sap CWE-668
8.8
2023-02-11 CVE-2022-34387 Exposure of Resource to Wrong Sphere vulnerability in Dell products
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privilege escalation vulnerability.
local
low complexity
dell CWE-668
7.8
2023-02-10 CVE-2022-34364 Exposure of Resource to Wrong Sphere vulnerability in Dell Bsafe Ssl-J
Dell BSAFE SSL-J, versions before 6.5 and version 7.0 contain a debug message revealing unnecessary information vulnerability.
local
low complexity
dell CWE-668
4.4
2023-02-10 CVE-2022-4903 Exposure of Resource to Wrong Sphere vulnerability in Codenameone Codename ONE 7.0.70
A vulnerability was found in CodenameOne 7.0.70.
network
high complexity
codenameone CWE-668
8.1
2023-02-10 CVE-2022-34452 Exposure of Resource to Wrong Sphere vulnerability in Dell Powerpath Management Appliance
PowerPath Management Appliance with versions 3.3, 3.2*, 3.1 & 3.0* contains sensitive information disclosure vulnerability.
network
low complexity
dell CWE-668
2.7
2023-02-09 CVE-2023-21438 Exposure of Resource to Wrong Sphere vulnerability in Samsung Android 11.0/12.0
Improper logic in HomeScreen prior to SMR Feb-2023 Release 1 allows physical attacker to access App preview protected by Secure Folder.
low complexity
samsung CWE-668
2.4
2023-02-09 CVE-2023-21445 Exposure of Resource to Wrong Sphere vulnerability in Samsung Android 11.0/12.0
Improper access control vulnerability in MyFiles prior to versions 12.2.09 in Android R(11), 13.1.03.501 in Android S(12) and 14.1.00.422 in Android T(13) allows local attacker to write file with MyFiles privilege via implicit intent.
local
low complexity
samsung CWE-668
7.8
2023-02-09 CVE-2023-21447 Exposure of Resource to Wrong Sphere vulnerability in Samsung Cloud 4.7.0.3/5.1.0.8/5.2.00.7
Improper access control vulnerabilities in Samsung Cloud prior to version 5.3.0.32 allows local attackers to access information with Samsung Cloud's privilege via implicit intent.
local
low complexity
samsung CWE-668
3.3
2023-02-01 CVE-2022-46756 Exposure of Resource to Wrong Sphere vulnerability in Dell Vxrail Manager
Dell VxRail, versions prior to 7.0.410, contain a Container Escape Vulnerability.
local
low complexity
dell CWE-668
6.7
2023-01-26 CVE-2021-41988 Exposure of Resource to Wrong Sphere vulnerability in Qlik Nprinting Designer 21.14.3.0
Qlik NPrinting Designer through 21.14.3.0 creates a Temporary File in a Directory with Insecure Permissions.
local
low complexity
qlik CWE-668
7.8