Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2023-05-18 CVE-2023-28369 Unspecified vulnerability in Brother Iprint&Scan 6.11.2
Brother iPrint&Scan V6.11.2 and earlier contains an improper access control vulnerability.
local
low complexity
brother
3.3
2023-05-18 CVE-2023-20106 Unspecified vulnerability in Cisco Identity Services Engine 3.1/3.2
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system.
network
low complexity
cisco
3.8
2023-05-17 CVE-2022-42336 Unspecified vulnerability in XEN 4.17
Mishandling of guest SSBD selection on AMD hardware The current logic to set SSBD on AMD Family 17h and Hygon Family 18h processors requires that the setting of SSBD is coordinated at a core level, as the setting is shared between threads.
local
low complexity
xen
3.3
2023-05-16 CVE-2023-2195 Cross-Site Request Forgery (CSRF) vulnerability in Jenkins Code DX
A cross-site request forgery (CSRF) vulnerability in Jenkins Code Dx Plugin 3.1.0 and earlier allows attackers to connect to an attacker-specified URL.
network
low complexity
jenkins CWE-352
3.5
2023-05-16 CVE-2023-32994 Improper Certificate Validation vulnerability in Jenkins Saml Single Sign on
Jenkins SAML Single Sign On(SSO) Plugin 2.1.0 and earlier unconditionally disables SSL/TLS certificate validation for connections to miniOrange or the configured IdP to retrieve SAML metadata, which could be abused using a man-in-the-middle attack to intercept these connections.
network
high complexity
jenkins CWE-295
3.7
2023-05-15 CVE-2023-20726 Missing Authorization vulnerability in multiple products
In mnld, there is a possible leak of GPS location due to a missing permission check.
3.3
2023-05-09 CVE-2023-27409 Unspecified vulnerability in Siemens Scalance Lpe9403 Firmware 2.0
A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1).
local
low complexity
siemens
3.3
2023-05-09 CVE-2023-29128 Unspecified vulnerability in Siemens 6Gk1411-1Ac00 Firmware and 6Gk1411-5Ac00 Firmware
A vulnerability has been identified in SIMATIC Cloud Connect 7 CC712 (All versions >= V2.0 < V2.1), SIMATIC Cloud Connect 7 CC716 (All versions >= V2.0 < V2.1).
network
low complexity
siemens
2.7
2023-05-09 CVE-2023-31975 Memory Leak vulnerability in Yasm Project Yasm 1.3.0
yasm v1.3.0 was discovered to contain a memory leak via the function yasm_intnum_copy at /libyasm/intnum.c.
local
low complexity
yasm-project CWE-401
3.3
2023-05-09 CVE-2023-2590 Unspecified vulnerability in Answer
Missing Authorization in GitHub repository answerdev/answer prior to 1.0.9.
network
low complexity
answer
3.5