Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2024-03-08 CVE-2024-23292 Unspecified vulnerability in Apple Iphone OS
This issue was addressed with improved data protection.
local
low complexity
apple
3.3
2024-03-06 CVE-2024-27288 Incorrect Authorization vulnerability in Fit2Cloud 1Panel
1Panel is an open source Linux server operation and maintenance management panel.
network
high complexity
fit2cloud CWE-863
3.1
2024-03-05 CVE-2024-23243 Unspecified vulnerability in Apple Ipad OS and Iphone OS
A privacy issue was addressed with improved private data redaction for log entries.
local
low complexity
apple
3.3
2024-03-05 CVE-2024-23256 Unspecified vulnerability in Apple Ipad OS and Iphone OS
A logic issue was addressed with improved state management.
local
low complexity
apple
3.3
2024-03-05 CVE-2024-20834 Unspecified vulnerability in Samsung Android 11.0/12.0
The sensitive information exposure vulnerability in WlanTest prior to SMR Mar-2024 Release 1 allows local attackers to access MAC address without proper permission.
local
low complexity
samsung
3.3
2024-03-05 CVE-2024-20840 Unspecified vulnerability in Samsung Voice Recorder
Improper access control in Samsung Voice Recorder prior to versions 21.5.16.01 in Android 12 and Android 13, 21.4.51.02 in Android 14 allows physical attackers using hardware keyboard to use VoiceRecorder on the lock screen.
low complexity
samsung
2.4
2024-03-04 CVE-2024-24901 Unspecified vulnerability in Dell Powerscale Onefs
Dell PowerScale OneFS 8.2.x through 9.6.0.x contain an insufficient logging vulnerability.
local
low complexity
dell
2.3
2024-02-29 CVE-2024-1949 Race Condition vulnerability in Mattermost Server
A race condition in Mattermost versions 8.1.x before 8.1.9, and 9.4.x before 9.4.2 allows an authenticated attacker to gain unauthorized access to individual posts' contents via carefully timed post creation while another user deletes posts.
network
high complexity
mattermost CWE-362
2.6
2024-02-29 CVE-2024-26132 Unspecified vulnerability in Element
Element Android is an Android Matrix Client.
local
low complexity
element
3.3
2024-02-29 CVE-2024-1128 Cross-site Scripting vulnerability in Themeum Tutor LMS
The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 2.6.0.
network
low complexity
themeum CWE-79
3.5