Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2022-01-15 CVE-2021-44049 Exposure of Resource to Wrong Sphere vulnerability in Cyberark Endpoint Privilege Manager
CyberArk Endpoint Privilege Manager (EPM) through 11.5.3.328 before 2021-12-20 allows a local user to gain elevated privileges via a Trojan horse Procmon64.exe in the user's Temp directory.
local
low complexity
cyberark CWE-668
7.8
2022-01-14 CVE-2021-39628 Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0/11.0
In StatusBar.java, there is a possible disclosure of notification content on the lockscreen due to a logic error in the code.
local
low complexity
google CWE-668
3.3
2022-01-12 CVE-2022-23118 Exposure of Resource to Wrong Sphere vulnerability in Jenkins Debian Package Builder
Jenkins Debian Package Builder Plugin 1.6.11 and earlier implements functionality that allows agents to invoke command-line `git` at an attacker-specified path on the controller, allowing attackers able to control agent processes to invoke arbitrary OS commands on the controller.
network
low complexity
jenkins CWE-668
8.8
2022-01-11 CVE-2022-21964 Exposure of Resource to Wrong Sphere vulnerability in Microsoft Windows 10 1607
Remote Desktop Licensing Diagnoser Information Disclosure Vulnerability
local
low complexity
microsoft CWE-668
5.5
2022-01-10 CVE-2021-42749 Exposure of Resource to Wrong Sphere vulnerability in Fastlinemedia Beaver Themer
In Beaver Themer, attackers can bypass conditional logic controls (for hiding content) when viewing the post archives.
network
low complexity
fastlinemedia CWE-668
5.3
2022-01-03 CVE-2021-37112 Exposure of Resource to Wrong Sphere vulnerability in Huawei Harmonyos
Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability may lead to Firmware leak.
network
low complexity
huawei CWE-668
5.3
2022-01-03 CVE-2021-39971 Exposure of Resource to Wrong Sphere vulnerability in Huawei Harmonyos
Password vault has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this vulnerability could compromise confidentiality.
network
low complexity
huawei CWE-668
7.5
2022-01-03 CVE-2021-1918 Exposure of Resource to Wrong Sphere vulnerability in Qualcomm products
Improper handling of resource allocation in virtual machines can lead to information exposure in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile
local
low complexity
qualcomm CWE-668
6.5
2021-12-27 CVE-2020-20948 Exposure of Resource to Wrong Sphere vulnerability in Jeecg 3.8
An arbitrary file download vulnerability in jeecg v3.8 allows attackers to access sensitive files via modification of the "localPath" variable.
network
low complexity
jeecg CWE-668
7.5
2021-12-27 CVE-2021-45708 Exposure of Resource to Wrong Sphere vulnerability in Abomonation Project Abomonation
An issue was discovered in the abomonation crate through 2021-10-17 for Rust.
network
low complexity
abomonation-project CWE-668
7.5