Vulnerabilities > Exposure of Resource to Wrong Sphere
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-06-22 | CVE-2021-0542 | Exposure of Resource to Wrong Sphere vulnerability in Google Android 11.0 In updateNotification of BeamTransferManager.java, there is a missing permission check. | 5.5 |
2021-06-11 | CVE-2019-9475 | Exposure of Resource to Wrong Sphere vulnerability in Google Android 10.0 In /proc/net of the kernel filesystem, there is a possible information leak due to a permissions bypass. | 5.5 |
2021-06-11 | CVE-2021-22897 | Exposure of Resource to Wrong Sphere vulnerability in multiple products curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLOPT_SSL_CIPHER_LIST when libcurl is built to use the Schannel TLS library. | 5.3 |
2021-06-10 | CVE-2021-34539 | Exposure of Resource to Wrong Sphere vulnerability in Cubecoders AMP An issue was discovered in CubeCoders AMP before 2.1.1.8. | 7.2 |
2021-06-09 | CVE-2020-24511 | Exposure of Resource to Wrong Sphere vulnerability in multiple products Improper isolation of shared resources in some Intel(R) Processors may allow an authenticated user to potentially enable information disclosure via local access. | 6.5 |
2021-06-09 | CVE-2021-33669 | Exposure of Resource to Wrong Sphere vulnerability in SAP Mobile SDK Certificate Provider 3.0.7 Under certain conditions, SAP Mobile SDK Certificate Provider allows a local unprivileged attacker to exploit an insecure temporary file storage. | 7.8 |
2021-06-08 | CVE-2021-22549 | Exposure of Resource to Wrong Sphere vulnerability in Google Asylo An attacker can modify the address to point to trusted memory to overwrite arbitrary trusted memory. | 7.8 |
2021-06-08 | CVE-2021-22550 | Exposure of Resource to Wrong Sphere vulnerability in Google Asylo An attacker can modify the pointers in enclave memory to overwrite arbitrary memory addresses within the secure enclave. | 7.8 |
2021-05-27 | CVE-2021-22118 | Exposure of Resource to Wrong Sphere vulnerability in multiple products In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation: by (re)creating the temporary storage directory, a locally authenticated malicious user can read or modify files that have been uploaded to the WebFlux application, or overwrite arbitrary files with multipart request data. | 7.8 |
2021-05-27 | CVE-2008-2544 | Exposure of Resource to Wrong Sphere vulnerability in Linux Kernel Mounting /proc filesystem via chroot command silently mounts it in read-write mode. | 5.5 |