Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2023-07-10 CVE-2023-3209 Unspecified vulnerability in Inspireui Mstore API
The MStore API WordPress plugin before 3.9.7 does not secure most of its AJAX actions by implementing privilege checks, nonce checks, or a combination of both.
network
low complexity
inspireui
3.5
2023-07-06 CVE-2023-30640 Unspecified vulnerability in Samsung Android 11.0/12.0/13.0
Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1 allows local attackers to change confiugration.
local
low complexity
samsung
3.3
2023-07-06 CVE-2023-30667 Unspecified vulnerability in Samsung Android 13.0
Improper access control in Audio system service prior to SMR Jul-2023 Release 1 allows attacker to send broadcast with system privilege.
local
low complexity
samsung
3.3
2023-07-04 CVE-2023-2010 Race Condition vulnerability in Incsub Forminator
The Forminator WordPress plugin before 1.24.1 does not use an atomic operation to check whether a user has already voted, and then update that information.
network
high complexity
incsub CWE-362
3.1
2023-07-04 CVE-2023-25523 NULL Pointer Dereference vulnerability in Nvidia Cuda Toolkit
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the nvdisasm binary file, where an attacker may cause a NULL pointer dereference by providing a user with a malformed ELF file.
local
low complexity
nvidia CWE-476
3.3
2023-06-30 CVE-2023-3485 Insecure Default Initialization of Resource vulnerability in Temporal
Insecure defaults in open-source Temporal Server before version 1.20 on all platforms allows an attacker to craft a task token with access to a namespace other than the one specified in the request.
local
high complexity
temporal CWE-1188
3.6
2023-06-28 CVE-2023-21512 Incorrect Default Permissions vulnerability in Samsung Android 11.0/12.0/13.0
Improper Knox ID validation logic in notification framework prior to SMR Jun-2023 Release 1 allows local attackers to read work profile notifications without proper access permission.
local
low complexity
samsung CWE-276
3.3
2023-06-27 CVE-2023-3436 Improper Locking vulnerability in Xpdfreader Xpdf 4.04
Xpdf 4.04 will deadlock on a PDF object stream whose "Length" field is itself in another object stream.
local
low complexity
xpdfreader CWE-667
3.3
2023-06-23 CVE-2022-42834 Unspecified vulnerability in Apple Macos
An access issue was addressed with improved access restrictions.
local
low complexity
apple
3.3
2023-06-23 CVE-2023-32365 Unspecified vulnerability in Apple Ipados and Iphone OS
The issue was addressed with improved checks.
low complexity
apple
2.4