Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2020-04-07 CVE-2017-18673 Improper Input Validation vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.x) software.
low complexity
google CWE-20
2.4
2020-04-07 CVE-2016-11027 Information Exposure vulnerability in Google Android 6.0
An issue was discovered on Samsung mobile devices with M(6.0) software.
low complexity
google CWE-200
2.4
2020-04-03 CVE-2020-5283 Cross-site Scripting vulnerability in Viewvc
ViewVC before versions 1.1.28 and 1.2.1 has a XSS vulnerability in CVS show_subdir_lastmod support.
network
low complexity
viewvc CWE-79
3.5
2020-04-02 CVE-2019-19092 Missing Authentication for Critical Function vulnerability in Hitachienergy Esoms
ABB eSOMS versions 4.0 to 6.0.3 use ASP.NET Viewstate without Message Authentication Code (MAC).
network
low complexity
hitachienergy CWE-306
3.5
2020-04-02 CVE-2019-19090 Missing Encryption of Sensitive Data vulnerability in Hitachienergy Esoms 4.0/6.0/6.0.2
For ABB eSOMS versions 4.0 to 6.0.2, the Secure Flag is not set in the HTTP response header.
network
low complexity
hitachienergy CWE-311
3.5
2020-04-01 CVE-2020-11470 Insufficient Verification of Data Authenticity vulnerability in Zoom Meetings 4.6.8
Zoom Client for Meetings through 4.6.8 on macOS has the disable-library-validation entitlement, which allows a local process (with the user's privileges) to obtain unprompted microphone and camera access by loading a crafted library and thereby inheriting Zoom Client's microphone and camera access.
local
low complexity
zoom CWE-345
3.3
2020-04-01 CVE-2020-9780 Improper Cross-boundary Removal of Sensitive Data vulnerability in Apple Ipados and Iphone OS
The issue was resolved by clearing application previews when content is deleted.
local
low complexity
apple CWE-212
3.3
2020-04-01 CVE-2020-9776 Unspecified vulnerability in Apple mac OS X
This issue was addressed with a new entitlement.
local
low complexity
apple
3.3
2020-04-01 CVE-2020-9773 Unspecified vulnerability in Apple Iphone OS
The issue was addressed with improved handling of icon caches.
local
low complexity
apple
3.3
2020-04-01 CVE-2020-3894 Race Condition vulnerability in Apple products
A race condition was addressed with additional validation.
network
high complexity
apple CWE-362
3.1