Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2020-04-08 CVE-2020-4164 Information Exposure Through an Error Message vulnerability in IBM Security Information Queue
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could expose sensitive information from applicatino errors which could be used in further attacks against the system.
network
low complexity
ibm CWE-209
2.7
2020-04-07 CVE-2017-18673 Improper Input Validation vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.x) software.
low complexity
google CWE-20
2.4
2020-04-07 CVE-2016-11027 Information Exposure vulnerability in Google Android 6.0
An issue was discovered on Samsung mobile devices with M(6.0) software.
low complexity
google CWE-200
2.4
2020-04-03 CVE-2020-5283 Cross-site Scripting vulnerability in Viewvc
ViewVC before versions 1.1.28 and 1.2.1 has a XSS vulnerability in CVS show_subdir_lastmod support.
network
low complexity
viewvc CWE-79
3.5
2020-04-02 CVE-2019-19092 Missing Authentication for Critical Function vulnerability in Hitachienergy Esoms
ABB eSOMS versions 4.0 to 6.0.3 use ASP.NET Viewstate without Message Authentication Code (MAC).
network
low complexity
hitachienergy CWE-306
3.5
2020-04-02 CVE-2019-19090 Missing Encryption of Sensitive Data vulnerability in Hitachienergy Esoms 4.0/6.0/6.0.2
For ABB eSOMS versions 4.0 to 6.0.2, the Secure Flag is not set in the HTTP response header.
network
low complexity
hitachienergy CWE-311
3.5
2020-04-01 CVE-2020-11470 Insufficient Verification of Data Authenticity vulnerability in Zoom Meetings 4.6.8
Zoom Client for Meetings through 4.6.8 on macOS has the disable-library-validation entitlement, which allows a local process (with the user's privileges) to obtain unprompted microphone and camera access by loading a crafted library and thereby inheriting Zoom Client's microphone and camera access.
local
low complexity
zoom CWE-345
3.3
2020-04-01 CVE-2020-9780 Improper Cross-boundary Removal of Sensitive Data vulnerability in Apple Ipados and Iphone OS
The issue was resolved by clearing application previews when content is deleted.
local
low complexity
apple CWE-212
3.3
2020-04-01 CVE-2020-9776 Unspecified vulnerability in Apple mac OS X
This issue was addressed with a new entitlement.
local
low complexity
apple
3.3
2020-04-01 CVE-2020-9773 Unspecified vulnerability in Apple Iphone OS
The issue was addressed with improved handling of icon caches.
local
low complexity
apple
3.3