Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2022-02-18 CVE-2022-23649 Unspecified vulnerability in Sigstore Cosign
Cosign provides container signing, verification, and storage in an OCI registry for the sigstore project.
local
low complexity
sigstore
3.3
2022-02-18 CVE-2021-46599 Unspecified vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
local
low complexity
bentley
3.3
2022-02-18 CVE-2021-46600 Unspecified vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
local
low complexity
bentley
3.3
2022-02-18 CVE-2021-46602 Unspecified vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
local
low complexity
bentley
3.3
2022-02-18 CVE-2021-46607 Unspecified vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
local
low complexity
bentley
3.3
2022-02-18 CVE-2021-46608 Unspecified vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
local
low complexity
bentley
3.3
2022-02-16 CVE-2019-4352 Unspecified vulnerability in IBM Maximo Anywhere 7.6.4.0
IBM Maximo Anywhere 7.6.4.0 applications could allow obfuscation of the application source code.
low complexity
ibm
2.4
2022-02-14 CVE-2021-25014 Unspecified vulnerability in Vowelweb Ibtana
The Ibtana WordPress plugin before 1.1.4.9 does not have authorisation and CSRF checks in the ive_save_general_settings AJAX action, allowing any authenticated users, such as subscriber to call it and change the plugin's settings which could lead to Stored Cross-Site Scripting issue.
network
low complexity
vowelweb
3.5
2022-02-14 CVE-2021-25109 SQL Injection vulnerability in Futuriowp Futurio Extra
The Futurio Extra WordPress plugin before 1.6.3 is affected by a SQL Injection vulnerability that could be used by high privilege users to extract data from the database as well as used to perform Cross-Site Scripting (XSS) against logged in admins by making send open a malicious link.
network
low complexity
futuriowp CWE-89
2.7
2022-02-11 CVE-2022-23434 Unspecified vulnerability in Samsung Bixby 3.7.50.6
A vulnerability using PendingIntent in Bixby Vision prior to versions 3.7.60.8 in Android S(12), 3.7.50.6 in Andorid R(11) and below allows attackers to execute privileged action by hijacking and modifying the intent.
local
low complexity
samsung
3.3