Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2024-07-09 CVE-2024-28067 Unspecified vulnerability in Samsung Exynos Modem 5300 Firmware
A vulnerability in Samsung Exynos Modem 5300 allows a Man-in-the-Middle (MITM) attacker to downgrade the security mode of packets going to the victim, enabling the attacker to send messages to the victim in plaintext.
network
high complexity
samsung
3.7
2024-07-03 CVE-2024-29508 Unspecified vulnerability in Artifex Ghostscript
Artifex Ghostscript before 10.03.0 has a heap-based pointer disclosure (observable in a constructed BaseFont name) in the function pdf_base_font_alloc.
local
low complexity
artifex
3.3
2024-07-03 CVE-2024-39353 Unspecified vulnerability in Mattermost
Mattermost versions 9.5.x <= 9.5.5 and 9.8.0 fail to sanitize the RemoteClusterFrame payloads before audit logging them which allows a high privileged attacker with access to the audit logs to read message contents.
network
low complexity
mattermost
2.7
2024-07-02 CVE-2024-39324 Incorrect Authorization vulnerability in Aimeos Ai-Admin-Graphql
aimeos/ai-admin-graphql is the Aimeos GraphQL API admin interface.
network
low complexity
aimeos CWE-863
3.8
2024-07-02 CVE-2024-20900 Improper Authentication vulnerability in Samsung Android 12.0/13.0/14.0
Improper authentication in MTP application prior to SMR Jul-2024 Release 1 allows local attackers to enter MTP mode without proper authentication.
local
low complexity
samsung CWE-287
3.3
2024-07-02 CVE-2024-34583 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in system property prior to SMR Jul-2024 Release 1 allows local attackers to get device identifier.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34586 Unspecified vulnerability in Samsung Android 12.0/13.0/14.0
Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure Knox privacy policy.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34597 Unspecified vulnerability in Samsung Health
Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary document files to the sandbox of Samsung Health.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34599 Unspecified vulnerability in Samsung Tips
Improper input validation in Tips prior to version 6.2.9.4 in Android 14 allows local attacker to send broadcast with Tips&#39; privilege.
local
low complexity
samsung
3.3
2024-07-02 CVE-2024-34600 Unspecified vulnerability in Samsung Flow
Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows local attackers to copy image files to external storage.
local
low complexity
samsung
3.3