Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2022-08-16 CVE-2022-37438 Unspecified vulnerability in Splunk and Splunk Cloud Platform
In Splunk Enterprise versions in the following table, an authenticated user can craft a dashboard that could potentially leak information (for example, username, email, and real name) about Splunk users, when visited by another user through the drilldown component.
network
low complexity
splunk
3.5
2022-08-15 CVE-2022-36007 Unspecified vulnerability in Venice Project Venice
Venice is a Clojure inspired sandboxed Lisp dialect with excellent Java interoperability.
local
low complexity
venice-project
3.3
2022-08-12 CVE-2022-20257 Unspecified vulnerability in Google Android 13.0
In Bluetooth, there is a possible way to pair a display only device without PIN confirmation due to a logic error in the code.
local
low complexity
google
3.3
2022-08-12 CVE-2022-20261 Missing Authorization vulnerability in Google Android 13.0
In LocationManager, there is a possible way to get location information due to a missing permission check.
local
low complexity
google CWE-862
2.3
2022-08-12 CVE-2022-20262 Missing Authorization vulnerability in Google Android 13.0
In ActivityManager, there is a possible way to check another process's capabilities due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20267 Missing Authorization vulnerability in Google Android 13.0
In bluetooth, there is a possible way to enable or disable bluetooth connection without user consent due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20280 SQL Injection vulnerability in Google Android 13.0
In MMSProvider, there is a possible read of protected data due to improper input validationSQL injection.
local
low complexity
google CWE-89
3.3
2022-08-12 CVE-2022-20305 Missing Authorization vulnerability in Google Android 13.0
In ContentService, there is a possible disclosure of available account types due to a missing permission check.
local
low complexity
google CWE-862
3.3
2022-08-12 CVE-2022-20307 Information Exposure Through Discrepancy vulnerability in Google Android 13.0
In AlarmManagerService, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
3.3
2022-08-12 CVE-2022-20309 Information Exposure Through Discrepancy vulnerability in Google Android 13.0
In PackageInstaller, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.
local
low complexity
google CWE-203
3.3