Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2020-08-31 CVE-2020-13472 Exposure of Resource to Wrong Sphere vulnerability in Gigadevice Gd32F103 Firmware
The flash memory readout protection in Gigadevice GD32F103 devices allows physical attackers to extract firmware via the debug interface by utilizing the DMA module.
low complexity
gigadevice CWE-668
4.6
2020-08-31 CVE-2020-13470 Exposure of Resource to Wrong Sphere vulnerability in Gigadevice Gd32F103 Firmware and Gd32F130 Firmware
Gigadevice GD32F103 and GD32F130 devices allow physical attackers to extract data via the probing of easily accessible bonding wires and de-obfuscation of the observed data.
low complexity
gigadevice CWE-668
4.6
2020-08-31 CVE-2020-13469 Exposure of Resource to Wrong Sphere vulnerability in Gigadevice Gd32Vf103 Firmware
The flash memory readout protection in Gigadevice GD32VF103 devices allows physical attackers to extract firmware via the debug interface by utilizing the CPU.
low complexity
gigadevice CWE-668
4.6
2020-07-29 CVE-2020-11934 Exposure of Resource to Wrong Sphere vulnerability in Canonical Ubuntu Linux
It was discovered that snapctl user-open allowed altering the $XDG_DATA_DIRS environment variable when calling the system xdg-open.
local
low complexity
canonical CWE-668
5.9
2020-07-17 CVE-2020-15816 Exposure of Resource to Wrong Sphere vulnerability in Westerndigital WD Discovery
In Western Digital WD Discovery before 4.0.251.0, a malicious application running with standard user permissions could potentially execute code in the application's process through library injection by using DYLD environment variables.
network
low complexity
westerndigital CWE-668
8.8
2020-07-15 CVE-2020-14064 Exposure of Resource to Wrong Sphere vulnerability in Icewarp Mail Server 12.3.0.1
IceWarp Email Server 12.3.0.1 has Incorrect Access Control for user accounts.
network
low complexity
icewarp CWE-668
6.5
2020-06-29 CVE-2020-12020 Exposure of Resource to Wrong Sphere vulnerability in Baxter Em1200 Firmware and Em2400 Firmware
Baxter ExactaMix EM 2400 Versions 1.10, 1.11, and 1.13 and ExactaMix EM1200 Versions 1.1, 1.2, and 1.4 does not restrict non administrative users from gaining access to the operating system and editing the application startup script.
local
low complexity
baxter CWE-668
6.1
2020-06-24 CVE-2020-10271 Exposure of Resource to Wrong Sphere vulnerability in multiple products
MiR100, MiR200 and other MiR robots use the Robot Operating System (ROS) default packages exposing the computational graph to all network interfaces, wireless and wired.
9.8
2020-06-19 CVE-2019-20853 Exposure of Resource to Wrong Sphere vulnerability in Mattermost Packages
An issue was discovered in Mattermost Packages before 5.16.3.
network
low complexity
mattermost CWE-668
critical
9.8
2020-06-01 CVE-2020-9291 Exposure of Resource to Wrong Sphere vulnerability in Fortinet Forticlient
An Insecure Temporary File vulnerability in FortiClient for Windows 6.2.1 and below may allow a local user to gain elevated privileges via exhausting the pool of temporary file names combined with a symbolic link attack.
local
low complexity
fortinet CWE-668
7.8