Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2023-05-31 CVE-2023-28351 Information Exposure Through Log Files vulnerability in Faronics Insight 10.0.19045
An issue was discovered in Faronics Insight 10.0.19045 on Windows.
local
low complexity
faronics CWE-532
3.3
2023-05-30 CVE-2022-39074 Unspecified vulnerability in ZTE products
There is an unauthorized access vulnerability in some ZTE mobile phones.
local
low complexity
zte
3.3
2023-05-30 CVE-2023-32684 Files or Directories Accessible to External Parties vulnerability in Linuxfoundation Lima
Lima launches Linux virtual machines, typically on macOS, for running containerd.
local
high complexity
linuxfoundation CWE-552
2.5
2023-05-30 CVE-2023-2117 Unspecified vulnerability in 10Web Image Optimizer
The Image Optimizer by 10web WordPress plugin before 1.0.27 does not sanitize the dir parameter when handling the get_subdirs ajax action, allowing a high privileged users such as admins to inspect names of files and directories outside of the sites root.
network
low complexity
10web
2.7
2023-05-29 CVE-2021-37845 Unspecified vulnerability in Citadel Webcit
An issue was discovered in Citadel through webcit-932.
network
high complexity
citadel
3.7
2023-05-26 CVE-2023-28322 An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously wasused to issue a `PUT` request which used that callback.
network
high complexity
haxx fedoraproject apple netapp
3.7
2023-05-26 CVE-2023-31225 Unspecified vulnerability in Huawei Emui
The Gallery app has the risk of hijacking attacks.
local
low complexity
huawei
3.3
2023-05-25 CVE-2023-31124 c-ares is an asynchronous resolver library.
network
high complexity
c-ares-project fedoraproject
3.7
2023-05-19 CVE-2023-28623 Missing Authorization vulnerability in Zulip
Zulip is an open-source team collaboration tool with unique topic-based threading.
network
high complexity
zulip CWE-862
3.7
2023-05-19 CVE-2023-32677 Missing Authorization vulnerability in Zulip
Zulip is an open-source team collaboration tool with unique topic-based threading.
network
high complexity
zulip CWE-862
3.1