Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2021-07-09 CVE-2020-22535 Exposure of Resource to Wrong Sphere vulnerability in Pbootcms 2.0.6
Incorrect Access Control vulnerability in PbootCMS 2.0.6 via the list parameter in the update function in upgradecontroller.php.
network
low complexity
pbootcms CWE-668
6.5
2021-07-08 CVE-2021-25432 Exposure of Resource to Wrong Sphere vulnerability in Samsung Members
Information exposure vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to access chat data.
local
low complexity
samsung CWE-668
3.3
2021-07-01 CVE-2020-27361 Exposure of Resource to Wrong Sphere vulnerability in Akkadianlabs Akkadian Provisioning Manager 4.50.02
An issue exists within Akkadian Provisioning Manager 4.50.02 which allows attackers to view sensitive information within the /pme subdirectories.
network
low complexity
akkadianlabs CWE-668
7.5
2021-06-30 CVE-2021-20461 Exposure of Resource to Wrong Sphere vulnerability in multiple products
IBM Cognos Analytics 10.0 and 11.1 is susceptible to a weakness in the implementation of the System Appearance configuration setting.
network
low complexity
ibm netapp CWE-668
6.5
2021-06-28 CVE-2021-28597 Exposure of Resource to Wrong Sphere vulnerability in Adobe Photoshop Elements
Adobe Photoshop Elements version 5.2 (and earlier) is affected by an insecure temporary file creation vulnerability.
local
low complexity
adobe CWE-668
5.5
2021-06-28 CVE-2021-28623 Exposure of Resource to Wrong Sphere vulnerability in Adobe Premiere Elements 3.0.0/5.2
Adobe Premiere Elements version 5.2 (and earlier) is affected by an insecure temporary file creation vulnerability.
local
low complexity
adobe CWE-668
5.5
2021-06-24 CVE-2021-24001 Exposure of Resource to Wrong Sphere vulnerability in Mozilla Firefox
A compromised content process could have performed session history manipulations it should not have been able to due to testing infrastructure that was not restricted to testing-only configurations.
network
low complexity
mozilla CWE-668
4.3
2021-06-24 CVE-2021-25652 Exposure of Resource to Wrong Sphere vulnerability in Avaya Aura Appliance Virtualization Platform 8.0.0.0/8.1.3.1
An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Appliance Virtualization Platform Utilities (AVPU).
local
low complexity
avaya CWE-668
5.5
2021-06-22 CVE-2020-18646 Exposure of Resource to Wrong Sphere vulnerability in 5None Nonecms 1.3.0
Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/public/index.php".
network
low complexity
5none CWE-668
7.5
2021-06-22 CVE-2020-18647 Exposure of Resource to Wrong Sphere vulnerability in 5None Nonecms 1.3.0
Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/nonecms/vendor".
network
low complexity
5none CWE-668
7.5