Vulnerabilities > Exposure of Resource to Wrong Sphere

DATE CVE VULNERABILITY TITLE RISK
2023-09-27 CVE-2023-44124 Exposure of Resource to Wrong Sphere vulnerability in Google Android 12.0/13.0
The vulnerability is to theft of arbitrary files with system privilege in the Screen recording ("com.lge.gametools.gamerecorder") app in the "com/lge/gametools/gamerecorder/settings/ProfilePreferenceFragment.java" file.
local
low complexity
google CWE-668
3.3
2023-09-22 CVE-2023-43782 Exposure of Resource to Wrong Sphere vulnerability in Falktx Cadence 0.9.0/0.9.1/0.9.2
Cadence through 0.9.2 2023-08-21 uses an Insecure /tmp/.cadence-aloop-daemon.x Temporary File.
local
low complexity
falktx CWE-668
5.5
2023-09-22 CVE-2023-43783 Exposure of Resource to Wrong Sphere vulnerability in Falktx Cadence 0.9.0/0.9.1/0.9.2
Cadence through 0.9.2 2023-08-21 uses an Insecure /tmp/cadence-wineasio.reg Temporary File.
network
low complexity
falktx CWE-668
7.5
2023-09-22 CVE-2023-43784 Exposure of Resource to Wrong Sphere vulnerability in Plesk Onyx 17.8.11
Plesk Onyx 17.8.11 has accessKeyId and secretAccessKey fields that are related to an Amazon AWS Firehose component.
network
low complexity
plesk CWE-668
7.5
2023-09-20 CVE-2023-31014 Exposure of Resource to Wrong Sphere vulnerability in Nvidia Geforce NOW 6.00.32705137/6.04.33108832
NVIDIA GeForce Now for Android contains a vulnerability in the game launcher component, where a malicious application on the same device can process the implicit intent meant for the streamer component.
local
low complexity
nvidia CWE-668
4.8
2023-09-19 CVE-2023-40788 Exposure of Resource to Wrong Sphere vulnerability in Bladex Springblade 3.2.0/3.6.0
SpringBlade <=V3.6.0 is vulnerable to Incorrect Access Control due to incorrect configuration in the default gateway resulting in unauthorized access to error logs
network
low complexity
bladex CWE-668
5.3
2023-09-18 CVE-2023-39046 Exposure of Resource to Wrong Sphere vulnerability in Tonton-Tei Waiting Project Tonton-Tei Waiting 13.6.1
An information leak in TonTon-Tei_waiting Line v13.6.1 allows attackers to obtain the channel access token and send crafted messages.
network
low complexity
tonton-tei-waiting-project CWE-668
6.5
2023-09-18 CVE-2023-39049 Exposure of Resource to Wrong Sphere vulnerability in Youmart-Tokunaga Project Youmart-Tokunaga 13.6.1
An information leak in youmart-tokunaga v13.6.1 allows attackers to obtain the channel access token and send crafted messages.
network
low complexity
youmart-tokunaga-project CWE-668
6.5
2023-09-18 CVE-2023-39056 Exposure of Resource to Wrong Sphere vulnerability in Coffee-Jumbo Project Coffee-Jumbo 13.6.1
An information leak in Coffee-jumbo v13.6.1 allows attackers to obtain the channel access token and send crafted messages.
network
low complexity
coffee-jumbo-project CWE-668
6.5
2023-09-18 CVE-2023-39039 Exposure of Resource to Wrong Sphere vulnerability in Camp Style Project Line Project Camp Style Project Line 13.6.1
An information leak in Camp Style Project Line v13.6.1 allows attackers to obtain the channel access token and send crafted messages.
network
low complexity
camp-style-project-line-project CWE-668
6.5